The BRs use the term misuse/misused in multiple places in regards to reasons for revocation, and Subscriber representations, but do not define the term.
What constitutes misuse of a certificate? Phishing? Fraud? Or is it only compromise of the private key or other action that results in someone who is not authorized being allowed use of the certificate? Or is it something else? Because it is undefined interpretations are all over the map. IMO the definition needs to be pinned down and codified in the Definitions section of the BRs. Regards, Rich Smith Senior Compliance Manager Comodo
_______________________________________________ Public mailing list [email protected] https://cabforum.org/mailman/listinfo/public
