7.1.2.7.2 已翻譯 對應原文版本:2.3.0

網域驗證型(DV)用戶憑證剖繪

跳至原文

Domain Validated

For a Subscriber Certificate to be Domain Validated, it MUST meet the following profile:

若用戶憑證屬於網域驗證型(Domain Validated)憑證,應(MUST)符合下列剖繪:

FieldRequirements
subjectSee following table.
certificatePoliciesMUST be present. MUST assert the Reserved Certificate Policy Identifier of 2.23.140.1.2.1 as a policyIdentifier. See Section 7.1.2.7.9.
All other extensionsSee Section 7.1.2.7.6
欄位要求
subject參見下表
certificatePolicies應(MUST)存在。應(MUST)使用 policyIdentifier 宣告保留憑證政策識別碼 2.23.140.1.2.1。參見第 7.1.2.7.9 節。
所有其他擴充欄位參見第 7.1.2.7.6 節

All subject names MUST be encoded as specified in Section 7.1.4.

所有 subject 名稱應(MUST)依第 7.1.4 節規定之方式編碼。

The following table details the acceptable AttributeTypes that may appear within the type field of an AttributeTypeAndValue, as well as the contents permitted within the value field.

下表列出 AttributeTypeAndValue 之 type 欄位允許使用的 AttributeType,以及對應之 value 欄位允許填列的內容。

Domain Validated subject Attributes
Attribute NamePresenceValueVerification
countryNameMAYThe two-letter ISO 3166-1 country code for the country associated with the Subject.Section 3.2.2.3
commonNameNOT RECOMMENDEDIf present, MUST contain a value derived from the subjectAltName extension according to Section 7.1.4.3.
Any other attributeMUST NOT--
網域驗證型憑證之 subject 屬性
AttributeType 屬性名稱必要性value驗證方法
countryName得(MAY)與主體關聯之國家的兩字母 ISO 3166-1 國家代碼。第 3.2.2.3 節
commonName不建議(NOT RECOMMENDED)若存在,應(MUST)包含依第 7.1.4.3 節規定,取自 subjectAltName 擴充欄位之值。
任何其他屬性不得(MUST NOT)--