Home > Repository

Summary of Amendments to CPS

Dated March 31, 2004

(Typographical and formatting changes have been omitted)

1. Section 1.1.2.3.3- VeriSign Managed PKI Key Management Service

Updated description of VeriSign Managed PKI Key Management Service.

2. Section 1.3.4 - Suitable Applications

Updated to include a recommendation against using Intermediate CAs as trust points for signed code and applications.

3. Section 3.2.2 - Routine Rekey and Renewal for CA Certificates

Changed reference from "CPS 3.1.8.1.2 and 3.1.8.1.3" to "3.1.8.2"

4. Section 3.4 - Revocation Request

Added information on how to request revocation of Code and Content Signing Certificates

5. Section 4.4.1.1 - Circumstances for Revoking End-User Subscriber Certificates

Updated to provide more detailed information about revocation procedure

6. Section 4.4.9 - CRL Issuance Frequency

Updated to clarify that expired Certificates need not be expired for more than 30-days before being removed from a CRL.

7. Section 6.1.9 - Key Usage Purposes

Updated to reflect that the Key Usage extension is used for Global Server IDs, Class 1 individual Certificates and Class 2 individual Certificates

8. Section 7.1.2.5 - Extended Key Usage

Updated to include Class 1 and Class 2 Individual Certificates

9. Section 7.2 - CRL and OCSP Profile

Removed specific time intervals for Next Updates

10. Definitions
10.1 Added reference to Section 3.4 to the definition of "Certificate Revocation List (CRL)"
10.2 Added definition of "VeriSign"