Welcome to the SOSDG Certificate Authority Server

  1. What is the certificate authority?
  2. Who can request a certificate?  How much does it cost?
  3. Terms of use
  4. Getting the root certificates, CRLs

1) What is the certificate authority?

The SOSDG CA is the issuing group that provides x509 (aka PKI) certificates and verification for the Summit Open Source Development Group, its administrators, developers, users, and partners. These certificates can be used for anything from SSL/TLS websites, to code signing and user authentication.

The SOSDG Root Level 0 certificate is not in any of the major browsers or operating systems, so you will need to manually import it into your local keystore and set it to full trust.  There are multiple sub certificates, that depending on how your system handles trust chains, may need to be imported as well (see section #4 for these).

 

2) Who can request a certificate?  How much does it cost?

The SOSDG CA primarily targets our own servers and users, but we are open to others requesting a certificate if they don't want to spend the money on one of the commercial CAs. If you are not familiar to our group, you will need to prove your identity - this can be done with a matching GPG key, copy of drivers license, business license, or other some form of govt. issued identification.

There is currently no cost for a certificate.

 

3) Terms of use

The SOSDG makes no guarantee of identity unless the certificate is in use by an SOSDG administrator or server.  By trusting a certificate from the SOSDG CA, you are agreeing not to hold us responsibile for any (in)actions relating to the use of the certificates.

We reserve the right to revoke any certificate for any reason, as well as the right to refuse to issue certificates to individuals/companies/orgs/groups that we deem inappropriate to use our services.

 

4) Getting the root certificates, CRLs

SOSDG Master Root CA (Level 0)

Level 1 CA Issuers