Coder Social home page Coder Social logo

Comments (4)

djpackham avatar djpackham commented on July 21, 2024

@lachellel

Would it be useful to include a table of the different trust stores (i.e. Microsoft, Apple, NSS, Java, etc.) that includes a brief description of each, as well as other resourceful links, the status of Common root cert for each trust store, and any other relevant info related to Trust Stores and FPKI?

from fpki-guides.

lachellel avatar lachellel commented on July 21, 2024

Yes, IMO.

The Trust Store guide is very explicit to only one trust store, and doesn't address all or even why.

This item:

This process will have to be conducted every time a new certificate is issued by a FPKI CA.

  • How do I do this? How do I know when something has changed? Who tells me? Do I get an alert? Do I check a webpage? Do I perform a query? How often should I check?

for this item:

A better method is to set your system to conduct dynamic path validation or use a SCVP service.

  • if I do dynamic, are all my workstations or servers going to download files? from where? how big is this?

All items above would be additional to consider. Minimum first IMO.

from fpki-guides.

weirdscience avatar weirdscience commented on July 21, 2024

Sorry, computer died mid pull. They are the same.

from fpki-guides.

weirdscience avatar weirdscience commented on July 21, 2024

The trust store part has been addressed. Is this ready to close? It seems there are three different issues here. This also addresses some of #9

  1. Information on Trust Stores and Common Policy
  2. How to conduct trust store management to trust FPKI certificates
  3. How to establish dynamic path validation (one issuer per type of platform)

Should this all be integrated with the PIV guide or vice versa? FPKI as the main guide with a section specific to PIV?

from fpki-guides.

Related Issues (20)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.