Consider changing statement in Certificate Management about the use of ACCC CA issued certificates for ADR end points #126
Labels
change request
A request for change to the design
query
A question or request for clarification
request for feedback
a request for the community to provide input on this issue
ANZ would like to request a change to the registry design as it currently stands around data recipient use of the ACCC CA issued certificates for the endpoints they are hosting. Currently the standard specifies DRs can use ACCC CA certs or a Cert issued by a public CA.
Currently ANZ use a specific list of CA providers which is managed by a vendor product. Adding and maintaining a new CA adds overhead in management and potential risk the CA will not be loaded or expires.
As we understand there are no ADRs currently using ACCC CAs for these end points, we feel it would be a good time to make the change to remove the option to use the ACCC CA and resort to use of Public CA only.
Current standards reference:
ADRs may choose to secure their endpoints with an ACCC CA issued certificate or a certificate issued by a public CA
https://cdr-register.github.io/register/#certificate-management
The text was updated successfully, but these errors were encountered: