CAs MUST NOT rely on HTTPS websites to identify Domain Contact information. CAs MUST rely on IANA resources for identifying Domain Contact information.
For CAs MUST NOT rely on HTTPS websites to identify Domain Contact information. CAs MUST rely on IANA resources for identifying Domain Contact information., requirement is CAs MUST NOT rely on HTTPS websites to identify Domain Contact information. CAs MUST rely on IANA resources for identifying Domain Contact information; effective date is 2025-01-15; baseline requirements section is 3.2.2.4; authority is CA/Browser Forum TLS Baseline Requirements; scope is all publicly-trusted CAs issuing TLS server certificates, recorded from its source on 2026-08-05.
- Requirement
- CAs MUST NOT rely on HTTPS websites to identify Domain Contact information. CAs MUST rely on IANA resources for identifying Domain Contact information. verified
- Effective date
- 2025-01-15 verified
- Baseline Requirements section
- 3.2.2.4 verified
- Authority
- CA/Browser Forum TLS Baseline Requirements our reading
- Scope
- all publicly-trusted CAs issuing TLS server certificates our reading
Values marked our reading are our classification of what the source says — the source does not print them in those words. The quote below is the evidence for each one; judge it yourself.
What the source says
2025-01-15 | 3.2.2.4 | CAs MUST NOT rely on HTTPS websites to identify Domain Contact information. CAs MUST rely on IANA resources for identifying Domain Contact information.
— cabforum.org, retrieved 2026-08-05
Source
- cabforum.orghttps://cabforum.org/working-groups/server/baseline-requirements/requirements/