...
- Up until date T1;
- All APs MUST support current PKI infrastructure. (clarify what 'support' really means for sending/receiving)
- All SMPs MUST support current PKI infrastructure.
- SML MUST support current PKI infrastructure
- PEPPOL Directory MUST support current PKI infrastructure
- After date T1 and until date T2;
- All APs MUST initiate a transaction using ANY of the two available PKI infrastructures.
- All APs MUST support receiving transactions initiated using BOTH current PKI infrastructure AND the new.
- All SMPs MUST support BOTH current PKI infrastructure and the new.
- Before C1;
- All (operational before T1) AP and SMP providers will have been issued certificates from the new PKI infrastructure. (Update: OpenPEPPOL internal deadline)
- After date T2;
- All APs MUST only support new PKI infrastructure.
- All SMPs MUST only support new PKI infrastructure.
T1 = 2018-04-03 00:00:00 (Suggestion Rune: too early)
C1 = 2018-08-15 23:59:59 (Suggestion Sven: 2018-09-15)
T2 = 2018-09-30 23:59:59 (Suggestion Sven: 2018-10-30)
Technical implementation
How to implement this from a technical point of view is dependent on the AP or SMP platform used. There will not be a guideline available for every platform, but the general approach is as follows.
...