9.9 已翻譯 對應原文版本:2.3.0

賠償

跳至原文

Indemnities

Notwithstanding any limitations on its liability to Subscribers and Relying Parties, the CA understands and acknowledges that the Application Software Suppliers who have a Root Certificate distribution agreement in place with the Root CA do not assume any obligation or potential liability of the CA under these Requirements or that otherwise might exist because of the issuance or maintenance of Certificates or reliance thereon by Relying Parties or others. Thus, except in the case where the CA is a government entity, the CA SHALL defend, indemnify, and hold harmless each Application Software Supplier for any and all claims, damages, and losses suffered by such Application Software Supplier related to a Certificate issued by the CA, regardless of the cause of action or legal theory involved. This does not apply, however, to any claim, damages, or loss suffered by such Application Software Supplier related to a Certificate issued by the CA where such claim, damage, or loss was directly caused by such Application Software Supplier’s software displaying as not trustworthy a Certificate that is still valid, or displaying as trustworthy: (1) a Certificate that has expired, or (2) a Certificate that has been revoked (but only in cases where the revocation status is currently available from the CA online, and the application software either failed to check such status or ignored an indication of revoked status).

儘管憑證機構(Certification Authority,CA)對用戶及信賴憑證者(Relying Party)之責任有所限制,CA 瞭解並確認,與根憑證機構(Root CA)訂有根憑證配發協議之應用軟體供應商(Application Software Supplier),並不承擔 CA 依本文件要求規定所負之任何義務或潛在責任,亦不承擔因憑證之簽發或維護,或信賴憑證者及其他人信賴該等憑證,而可能產生之任何義務或潛在責任。因此,除 CA 為政府機關之情形外,CA 應(SHALL)就各應用軟體供應商因 CA 所簽發之憑證而遭受之一切請求、損害及損失,不論其所涉訴因或法律理論為何,均應協助該應用軟體供應商進行答辯、予以賠償並使其免受損害。惟應用軟體供應商因 CA 所簽發之憑證而遭受之任何請求、損害或損失,係由該應用軟體供應商的軟體直接造成下列情形,則不適用前述規定:將仍屬有效之憑證顯示為不受信賴;或將下列憑證顯示為受信賴:(1)已過期之憑證;或(2)已廢止之憑證(但僅限於 CA 當時已在線上提供該憑證的廢止狀態,而該應用軟體未檢查狀態或忽略憑證已廢止之狀態指示的情形)。