Skip to main content

1. Introduction

1. Introduction

While using CMP [RFC4210] in industrial and Internet of Things environments and developing the Lightweight CMP Profile [RFC9483], some limitations were identified in the original CMP specification. This document updates [RFC4210] and [RFC6712] to overcome these limitations.

Among other updates, this document improves the crypto agility of CMP, which allows more flexibility for future advances in cryptography.

This document also introduces new extended key usages to identify CMP endpoints on registration and certification authorities.

The main content of [RFC4210] and [RFC6712] remains unchanged. This document lists all sections that are updated, replaced, or added to the current text of the respective RFCs.

The authors acknowledge that the style of the document is hard to read because the original RFCs must be read along with this document to get the complete content. The working group decided to use this approach in order to keep the changes to [RFC4210] and [RFC6712] to the required minimum. This was meant to speed up the editorial process and to minimize the effort spent on reviewing the full text of the original documents.

However, [PKIX-CMP] and [HTTP-CMP] are intended to obsolete RFCs 4210 and 6712, respectively; these documents also include the changes listed in this document.