DPS
Drejtoria e Përgjithshme e Standardizimit
Tel/Cel: +355 4 222 62 55
E-mail: info@dps.gov.al
Adresa: Rr.: "Reshit Collaku", (pranë ILDKPKI, kati VI), Kutia Postare 98, Tiranë - Shqipëri
Main menu

SSH EN 319 411-1 V1.1.1:2016

Nënshkrimet Elektronike dhe Infrastrukturat - ESI; Kërkesat e sigurisë dhe politikat për Ofruesit e Shërbimeve të Besueshme në lidhje me çertifikimin; Pjesa 1: Kërkesa të përgjithshme

Electronic Signatures and Infrastructures (ESI); Policy and security requirements for Trust Service Providers issuing certificates; Part 1: General requirements
28 sht 2016

General information

60.60     19 korr 2016

DPS

DPS/KT 10

European Norm

33.020  

anglisht  

Buying

Publikuar

Language in which you want to receive the document.

Scope

The present document specifies generally applicable policy and security requirements for Trust Service Providers (TSP)
issuing public key certificates, including trusted web site certificates.
The policy and security requirements are defined in terms of requirements for the issuance, maintenance and life-cycle
management of certificates. These policy and security requirements support six reference certificate policies, defined in
clause 5.
A framework for the definition of policy requirements for TSPs issuing certificates in a specific context where
particular requirements apply is defined in clause 7.
The present document covers requirements for CA hierarchies, however this is limited to supporting the policies as
specified in the present document. It does not include requirements for root CAs and intermediate CAs for other
purposes.
The present document is applicable to:
• the general requirements of certification in support of cryptographic mechanisms, including digital signatures
and seals;
• the general requirements of certification authorities issuing TLS/SSL certificates;
• the general requirements of the use of cryptography for authentication and encryption.
The present document does not specify how the requirements identified can be assessed by an independent party,
including requirements for information to be made available to such independent assessors, or requirements on such
assessors.
NOTE: See ETSI EN 319 403 [i.2] for guidance on assessment of TSP processes and services. The present
document references ETSI EN 319 401 [8] for general policy requirements common to all classes of TSP
services.
The present document however provides in annex C, a checklist of the policy requirements specific to TSP issuing
certificates (as expressed in the present document) including the generic requirements which are independent of the type
of service (as expressed in ETSI EN 319 401 [8]).
The present document includes provisions consistent with the requirements from the CA/Browser Forum in EVCG [4]
and BRG [5].

Life cycle

NOW

PUBLISHED
SSH EN 319 411-1 V1.1.1:2016
60.60 Standard published
19 korr 2016

Related project

Adopted from EN 319 411-1 V1.1.1:2016 IDENTICAL