...
- After 2018-09-03 00:00:00 all Access Points in the network MUST entrust both the current PKI infrastructure and the new PKI infrastructure. Transactions can still be sent using ANY PKI infrastructure.
- After 2018-11-30 23:59:59 all Access Points in the network MUST only send and receive transactions using the new PKI infrastructure.
- The needed Root and Intermediate CAs are available for download here.
- You will be contacted when it is your turn to enroll for a PKI v3 certificate.
...
- After C1 the operational office of OpenPeppol will commence issuing of PKI v3 certificates.
- Up until date T1;
- All APs MUST be able to exchange transactions using the PKI v2 certificates.
- All SMPs MUST support PKI v2 certificates.
- SML MUST support PKI v2 certificates.
- PEPPOL Directory MUST support PKI v2 certificates.
- After date T1 and until date T2;
- All APs MUST be able to initiate a transaction (send) using ANY of the two available PKI certificates (v2 or v3).
- All APs MUST be able to support receiving transactions initiated using BOTH available PKI certificates (v2 and v3).
- All SMPs MUST support BOTH available PKI certificates (v2 and v3).
- Before C2;
- All (operational before T1) AP and SMP providers will have been issued certificates from the PKI v3 infrastructure (this is an internal OpenPeppol deadline).
- After date T2;
- All APs MUST only exchange transactions using PKI v3 certificates.
- All SMPs MUST only support PKI v3 certificates.
C1 = 2018-04-18 16 00:00:00
T1 = 2018-09-03 00:00:00
C2 = 2018-10-31 23:59:59
...
The needed Root and Intermediate CAs are available for download here.
Access Point | SMP | PEPPOL Directory | SML | OpenPEPPOL | |||
---|---|---|---|---|---|---|---|
Sending | Receiving | Server | Client | ||||
No later than T1 |
|
|
|
|
| After T1 only v3 certificates will be issued. | |
After C1 | All service providers should have a v3 certificate. | ||||||
No later than T2 |
|
|
|
|
|
| |
After T2 |
|
|
|
|
|
|
...