|
The CertiPath Standard service offers a certification
service to commercial enterprises who wish to operate
Principal CAs subordinate to CertiPath's Standard Root CA
policy (i.e., the Enterprise's CA will inherit CertiPath's
Standard Certificate Policy). Enterprises will have to
develop Certificate Practices and Procedures that align with
the CertiPath CP.
In addition to the CertiPath Bridge CA
used for the Premium Service, CertiPath operates a second
root CA called the CertiPath Root CA for the Standard
Service. This CA serves as a trust anchor for external
enterprise CAs to create a PKI hierarchy. The Standard CA is
cross-certified with the Premium Root CA to create trust
interoperability such that there is trust equivalence
between the two services.
Upon successful review of the Enterprise
CA CPS (and 3rd party audit), the enterprise CA certificate
is signed by the CertiPath Standard CA. The Standard CA is
trusted by relying parties as it is cross-certified with the
Premium CA. In turn, the enterprise CA is trusted as its CA
certificate is signed by the Standard CA. Thus, the relying
party trusts certificates issued by the enterprise CA. This
provides the same level of trust assurance as an enterprise
CA that is cross-certified with the CertiPath Premium CA.

|