CSOR
Public Key Infrastructure (PKI) Objects Registration The CSOR has allocated the following registration branch for Public Key Infrastructure (PKI) objects: csor-pki={joint-iso-ccitt(2) country(16) us(840) organization(1) gov(101) csor(3) pki(2)}. Object-specific registration procedures for PKI-related objects will be specified in the document General Procedures for Registering Computer Security Objects (NISTIR 5308). The procedures will indicate the information that must be provided when registering objects under this branch. A registration branch for Certificate Policies, csor-certpolicy={csor-pki cert-policy(1)} is currently available. Other types of PKI objects will be registered as needed. Additional information on Federal PKI activities is available from the NIST PKI Page. Registered Objects
There are five objects registered to support the ACES project. These objects define an arc for policies associated with the GSA ACES project, and four distinct policies. Note that the four policies are all defined within a single document. -- the ACES policy arc -- the aces policy OIDs -- U.S. Patent and Trademark Office Registered Objects The following arc has been reserved for PKI policies under development at U.S. Patent and Trademark Office. pto-policies OBJECT IDENTIFIER ::= { csor-certpolicy 2 } Federal Bridge Certification Authority Registered Objects Six objects have been registered to support the Federal Bridge Certification Authority. The first object is an arc for FBCA policies; the remaining five objects identify the five certificate policies used by the Federal Bridge Certification Authority. The five polices are defined by the FBCA certificate policy. fbca-policies OBJECT IDENTIFIER ::= { csor-certpolicy 3 } National Institute of Standards and Technology Registered Objects The following arc has been reserved for PKI policies under development at National Institute of Standards and Technology. nist-policies OBJECT IDENTIFIER ::= { csor-certpolicy 4 } U.S. Treasury Department's Financial Management Service (FMS) Registered Objects Two objects have been registered to support the U.S. Treasury Department's Financial Management Service (FMS) PKI. The first object defines an arc for U.S. treasury PKI policies. The second object is the FMS PKI policy. The FMS policy is defined in this document. treasury-policies OBJECT IDENTIFIER ::= { csor-certpolicy 5
} State Department Registered Objects Five objects have been registered to support the U.S. State Department PKI. The first object is an arc for State Department policies; the remaining four objects identify the four certificate policies that may used by the State Department PKI. The four policies are defined by the State Department certificate policy. state-policies OBJECT IDENTIFIER ::= { csor-certpolicy 6
} Federal Deposit Insurance Corporation Registered Objects Five objects have been registered to support the Federal Deposit Insurance Corporation PKI. The first object is an arc for FDIC policiesi; the remaining four objects identify the four certificate policies that may used by the Federal Deposit Insurance Corporation PKI. The four policies are defined by the FDIC certificate policy. fdic-policies OBJECT IDENTIFIER ::= { csor-certpolicy 7 } PKI Pilots and Testing Registered Objects There are eleven objects registered to support PKI pilots and testing. These objects define an arc for policies associated and ten distinct policies. These policies should never be inserted in "real" certificates, and no relying party should ever accept such a certificate to implement security services in a "real" application! Note that the ten policies are all equivalent and are defined within a single test policy document. -- test policy arc csor-test-policies OBJECT IDENTIFIER ::= { 2 16 840 1 101 3 2 1 48 } -- test policy OIDs test1 OBJECT IDENTIFIER ::= { csor-test-policies 1
}
Last updated:
July 29, 2005
|
|
Disclaimer Notice & Privacy Policy Send comments / suggestions to NIST's CSOR contact NIST is an Agency of the U.S. Commerce Department's Technology Administration |