summaryrefslogtreecommitdiffstats
path: root/design/hs_pki_templates
diff options
context:
space:
mode:
authord3llf <d3llf@hackerspace.pl>2017-02-05 12:53:47 +0100
committerd3llf <d3llf@hackerspace.pl>2017-02-05 12:53:47 +0100
commitf5c69eaf0b7359d0ce9be655d9fdce9212b57352 (patch)
treef474efad427c9aae663514d3558de02d6b693184 /design/hs_pki_templates
downloadhs_pki-f5c69eaf0b7359d0ce9be655d9fdce9212b57352.tar.gz
hs_pki-f5c69eaf0b7359d0ce9be655d9fdce9212b57352.tar.bz2
hs_pki-f5c69eaf0b7359d0ce9be655d9fdce9212b57352.tar.xz
hs_pki-f5c69eaf0b7359d0ce9be655d9fdce9212b57352.zip
Init commit: stub README; RFI for hs_pki_uc needed
Diffstat (limited to 'design/hs_pki_templates')
-rw-r--r--design/hs_pki_templates19
1 files changed, 19 insertions, 0 deletions
diff --git a/design/hs_pki_templates b/design/hs_pki_templates
new file mode 100644
index 0000000..3196fc6
--- /dev/null
+++ b/design/hs_pki_templates
@@ -0,0 +1,19 @@
+End user:
+ End user split in:
+ - soft stored certs
+ - obfuscated certs
+ - hardware secured certs
+
+ End user:
+ - Client certs (auth)
+ - E-mail certs (signing)
+ - Encryption
+
+ Device:
+ - TLS certs (encr/auth)
+ * server
+ * client
+ * server+client(?)
+
+ All above should be issued per application or generally applications should
+ leverage main user certificate