07 November 2012

Editor:

Juan Carlos Cruellas, UPC cruellas@ac.upc.edu

Second Trust Framework. Scenario SC12

This scenario also has RootCAOK as the root CA, but it contains a CA (identified by code "LevelBVA_R") whose certificate, stored in LevelBCA_R.crt, has been already revoked.

The present entities of this scenario are listed below:

  1. The root CA (code "RootCAOK").
  2. The first level CA directly certified by the root CA(code "LevelACAOK").
  3. A second level CA certified by LevelACAOK, whose certificate has been revoked (code "LevelBCA_R").
  4. A signing user, certified by LevelBCA_R CA, whose certificate status is valid (code "SigningUser2").
  5. The same Time-stamping server that is used in scenario SCOK. The OCSP servers indicated in this page (that provides details on access to these online pki services).

The figure below shows the entities and the files containing cryptographic material for this scenario.