[Discission] Ballot SMC013: Enable PQC Algorithms for S/MIME

1,883 views
Skip to first unread message

Stephen Davidson

unread,
Jul 2, 2025, 5:15:07 PMJul 2
to smcwg-...@groups.cabforum.org

Ballot SMC013: Enable PQC Algorithms for S/MIME

Summary: 

This ballot introduces specifications for the use of two post-quantum cryptography (PQC) algorithms, as standardized by the U.S. National Institute of Standards and Technology (NIST), in the S/MIME BR:

  • ML-DSA, or Module-Lattice-Based Digital Signature Algorithm, a digital signature scheme; and
  • ML-KEM, or Module-Lattice-Based Key-Encapsulation Mechanism, a key encapsulation mechanism.


The ballot specifies single-key/non-hybrid PQC certificates that do not rely upon pre-quantum algorithms.


The ballot is intended to enable experimentation by Certificate Issuers with PQC certificates; noting that additional requirements on the use of PQC may be imposed by Root programs.


This ballot is proposed by Stephen Davidson (DigiCert) and endorsed by Andreas Henschel (D-Trust) and Martijn Katerbarg (Sectigo).

— Motion Begins —

This ballot modifies the “Baseline Requirements for the Issuance and Management of Publicly-Trusted S/MIME Certificates” (“S/MIME Baseline Requirements”), based on Version 1.0.10.

MODIFY the Baseline Requirements as specified in the following Redline:

 

https://github.com/cabforum/smime/compare/59687c5e3835f889cdbb0ff0f0a24cfffc684084...0ba137373f1c7cb1ac52981b6b155ffd1be52267

— Motion Ends —

This ballot proposes a Final Maintenance Guideline. The procedure for approval of this ballot is as follows:

Discussion (at least 7 days)

  • Start time: July 2, 2025 at 18:00:00 UTC
  • End time: July 11, 2025 at 18:00:00 UTC

 

Stephen Davidson

unread,
Jul 12, 2025, 11:51:59 AMJul 12
to smcwg-...@groups.cabforum.org


Voting for Approval

  • Start time: July 14, 2025 at 17:00:00 UTC
  • End time: July 21, 2025 at 17:00:00 UTC

 

Adriano Santoni

unread,
Jul 13, 2025, 2:18:47 AMJul 13
to smcwg-...@groups.cabforum.org

Actalis votes 'yes' to SMC013


Il 12/07/2025 17:51, 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) ha scritto:
--
You received this message because you are subscribed to the Google Groups "S/MIME Certificate WG - Public (CA/B Forum)" group.
To unsubscribe from this group and stop receiving emails from it, send an email to smcwg-public...@groups.cabforum.org .
To view this discussion visit https://groups.google.com/a/groups.cabforum.org/d/msgid/smcwg-public/BL1PR14MB5143BAF941B46B571609C556E54AA%40BL1PR14MB5143.namprd14.prod.outlook.com .

Stephen Davidson

unread,
Jul 13, 2025, 3:27:24 PMJul 13
to smcwg-...@groups.cabforum.org, smcwg-...@groups.cabforum.org
Hi Adriano 
Voting opens tomorrow - would you mind recasting your vote tomorrow afternoon?
thank you, Stephen 

On Jul 13, 2025, at 03:19, 'Adriano Santoni' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org> wrote:



Ruiter, Albert de

unread,
Jul 14, 2025, 2:30:43 AMJul 14
to smcwg-...@groups.cabforum.org

PKIoverheid votes “Yes” in favor for this Ballot.

 


Albert de Ruiter

Policy Authority PKIoverheid

 

Logius

 

Dienst Digitale Samenleving

Ministerie van Binnenlandse Zaken en Koninkrijksrelaties

........................................................................

M 06-22796535

Albert...@logius.nl

www.logius.nl

 

........................................................................

Logius is continu op zoek naar nieuwe collega’s. Bekijk alle vacatures op onze website.

Samen zorgen we voor een digitale overheid die werkt voor iedereen

--

You received this message because you are subscribed to the Google Groups "S/MIME Certificate WG - Public (CA/B Forum)" group.
To unsubscribe from this group and stop receiving emails from it, send an email to smcwg-public...@groups.cabforum.org.



Dit bericht kan informatie bevatten die niet voor u is bestemd. Indien u niet de geadresseerde bent of dit bericht abusievelijk aan u is toegezonden, wordt u verzocht dat aan de afzender te melden en het bericht te verwijderen. De Staat aanvaardt geen aansprakelijkheid voor schade, van welke aard ook, die verband houdt met risico's verbonden aan het elektronisch verzenden van berichten.
This message may contain information that is not intended for you. If you are not the addressee or if this message was sent to you by mistake, you are requested to inform the sender and delete the message. The State accepts no liability for damage of any kind resulting from the risks inherent in the electronic transmission of messages.

Bruce Morton

unread,
Jul 14, 2025, 12:14:21 PMJul 14
to smcwg-...@groups.cabforum.org

Entrust abstains to ballot SMC013.

 

 

Bruce.

 

From: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>
Sent: Saturday, July 12, 2025 11:52 AM
To: smcwg-...@groups.cabforum.org
Subject: [EXTERNAL] [Smcwg-public] [Voting for Approval] Ballot SMC013: Enable PQC Algorithms for S/MIME

 

Ballot SMC013: Enable PQC Algorithms for S/MIME Summary: This ballot introduces specifications for the use of two post-quantum cryptography (PQC) algorithms, as standardized by the U.S. National Institute of Standards and Technology (NIST),

--

You received this message because you are subscribed to the Google Groups "S/MIME Certificate WG - Public (CA/B Forum)" group.
To unsubscribe from this group and stop receiving emails from it, send an email to smcwg-public...@groups.cabforum.org.
To view this discussion visit https://groups.google.com/a/groups.cabforum.org/d/msgid/smcwg-public/BL1PR14MB5143BAF941B46B571609C556E54AA%40BL1PR14MB5143.namprd14.prod.outlook.com.

Any email and files/attachments transmitted with it are intended solely for the use of the individual or entity to whom they are addressed. If this message has been sent to you in error, you must not copy, distribute or disclose of the information it contains. Please notify Entrust immediately and delete the message from your system.

黃晟(orca)

unread,
Jul 14, 2025, 9:32:59 PMJul 14
to smcwg-...@groups.cabforum.org

TWCA votes  “YES”  on Ballot SMC013

 

Regards,

 

黃晟 Sean Huang

認證研發部 高階研發工程師
電話:
02-2370-8886分機728
傳真:02-2388-6720
電子郵件:or...@twca.com.tw

100002台北市延平南路8510
https://www.twca.com.tw

--

Hazhar Ismail

unread,
Jul 14, 2025, 9:47:21 PMJul 14
to smcwg-...@groups.cabforum.org
MSC Trustgate votes 'YES' to Ballot SMC013.

Warm regards,

Hazhar Ismail

 


From: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>
Sent: Saturday, 12 July, 2025 11:51 PM
To: smcwg-...@groups.cabforum.org <smcwg-...@groups.cabforum.org>
Subject: [Smcwg-public] [Voting for Approval] Ballot SMC013: Enable PQC Algorithms for S/MIME
 
--

Scott Rea

unread,
Jul 14, 2025, 10:04:18 PMJul 14
to smcwg-...@groups.cabforum.org

eMudhra votes Yes on Ballot SMC013

 

From: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>
Date: Saturday, 12 July 2025 at 7:52

PM
To: smcwg-...@groups.cabforum.org <smcwg-...@groups.cabforum.org>
Subject: [Smcwg-public] [Voting for Approval] Ballot SMC013: Enable PQC Algorithms for S/MIME

CAUTION: This email is originated from outside of the organization. Do not open the links or the attachments unless you recognize the sender and know the content is safe.

 

--

You received this message because you are subscribed to the Google Groups "S/MIME Certificate WG - Public (CA/B Forum)" group.
To unsubscribe from this group and stop receiving emails from it, send an email to smcwg-public...@groups.cabforum.org.
To view this discussion visit https://groups.google.com/a/groups.cabforum.org/d/msgid/smcwg-public/BL1PR14MB5143BAF941B46B571609C556E54AA%40BL1PR14MB5143.namprd14.prod.outlook.com.

Disclaimer: The email and its contents hold confidential information and are intended for the person or entity to which it is addressed. If you are not the intended recipient, please note that any distribution or copying of this email is strictly prohibited as per Company Policy, you are requested to notify the sender and delete the email and associated attachments with it from your system.

Dimitris Zacharopoulos (HARICA)

unread,
Jul 15, 2025, 1:08:40 AMJul 15
to 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum)
HARICA votes "yes" to ballot SMC013.
--

Adriano Santoni

unread,
Jul 15, 2025, 1:42:23 AMJul 15
to smcwg-...@groups.cabforum.org
Actalis votes Yes on Ballot SMC013

Ashish Dhiman

unread,
Jul 15, 2025, 1:52:11 AMJul 15
to smcwg-...@groups.cabforum.org

GlobalSign Votes Yes to Ballot SMC013

 

Ashish

--

Pedro FUENTES

unread,
Jul 15, 2025, 1:54:21 AMJul 15
to smcwg-...@groups.cabforum.org
OISTE Votes Yes to SMC013




WISeKey SA
Pedro Fuentes
CSO - Trust Services Manager

Office: + 41 (0) 22 594 30 00
Mobile: + 41 (0) 
791 274 790
Address: Avenue Louis-Casaï 58 | 1216 Cointrin | Switzerland
Stay connected with WISeKey

THIS IS A TRUSTED MAIL: This message is digitally signed with a WISeKey identity. If you get a mail from WISeKey please check the signature to avoid security risks

CONFIDENTIALITY: This email and any files transmitted with it can be confidential and it’s intended solely for the use of the individual or entity to which they are addressed. If you are not the named addressee you should not disseminate, distribute or copy this e-mail. If you have received this email in error please notify the sender

DISCLAIMER: WISeKey does not warrant the accuracy or completeness of this message and does not accept any liability for any errors or omissions herein as this message has been transmitted over a public network. Internet communications cannot be guaranteed to be secure or error-free as information may be intercepted, corrupted, or contain viruses. Attachments to this e-mail are checked for viruses; however, we do not accept any liability for any damage sustained by viruses and therefore you are kindly requested to check for viruses upon receipt.

Ruiter, Albert de

unread,
Jul 15, 2025, 2:03:04 AMJul 15
to smcwg-...@groups.cabforum.org

PKIoverheid votes Yes on Ballot SMC013

 

Kind regards,

 


Albert de Ruiter

Policy Authority PKIoverheid

 

Logius

 

Dienst Digitale Samenleving

Ministerie van Binnenlandse Zaken en Koninkrijksrelaties

........................................................................

M 06-22796535

Albert...@logius.nl

www.logius.nl

 

........................................................................

Logius is continu op zoek naar nieuwe collega’s. Bekijk alle vacatures op onze website.

Samen zorgen we voor een digitale overheid die werkt voor iedereen

 

Van: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>

Verzonden: zaterdag 12 juli 2025 17:52
Aan: smcwg-...@groups.cabforum.org

--

You received this message because you are subscribed to the Google Groups "S/MIME Certificate WG - Public (CA/B Forum)" group.
To unsubscribe from this group and stop receiving emails from it, send an email to smcwg-public...@groups.cabforum.org.
To view this discussion visit https://groups.google.com/a/groups.cabforum.org/d/msgid/smcwg-public/BL1PR14MB5143BAF941B46B571609C556E54AA%40BL1PR14MB5143.namprd14.prod.outlook.com.

Henschel, Andreas

unread,
Jul 15, 2025, 2:50:10 AMJul 15
to smcwg-...@groups.cabforum.org

D-TRUST votes „yes“ on Ballot SMC013

 

KR,

Andreas

--

Inigo Barreira

unread,
Jul 15, 2025, 3:29:40 AMJul 15
to smcwg-...@groups.cabforum.org

Sectigo votes yes

 

De: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>
Enviado el: sábado, 12 de julio de 2025 17:52
Para: smcwg-...@groups.cabforum.org
Asunto: [Smcwg-public] [Voting for Approval] Ballot SMC013: Enable PQC Algorithms for S/MIME

 

Ballot SMC013: Enable PQC Algorithms for S/MIME Summary: This ballot introduces specifications for the use of two post-quantum cryptography (PQC) algorithms, as standardized by the U.S. National Institute of Standards and Technology (NIST),

ZjQcmQRYFpfptBannerStart

This Message Is From an External Sender

This message came from outside your organization.

    Report Suspicious    ‌

ZjQcmQRYFpfptBannerEnd

--

Stefan Selbitschka

unread,
Jul 15, 2025, 3:35:20 AMJul 15
to smcwg-...@groups.cabforum.org
rundQuadrat votes "YES" on SMC013


On 7/12/25 17:51, 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) wrote:
> *Ballot SMC013: Enable PQC Algorithms for S/MIME *
>
> Summary:
>
> This ballot introduces specifications for the use of two post-quantum cryptography (PQC) algorithms,
> as standardized by the U.S. National Institute of Standards and Technology (NIST), in the S/MIME BR:
>
> * ML-DSA, or Module-Lattice-Based Digital Signature Algorithm, a digital signature scheme; and
> * ML-KEM, or Module-Lattice-Based Key-Encapsulation Mechanism, a key encapsulation mechanism.
>
>
> The ballot specifies single-key/non-hybrid PQC certificates that do not rely upon pre-quantum
> algorithms.
>
>
> The ballot is intended to enable experimentation by Certificate Issuers with PQC certificates;
> noting that additional requirements on the use of PQC may be imposed by Root programs.
>
>
> This ballot is proposed by Stephen Davidson (DigiCert) and endorsed by Andreas Henschel (D-Trust)
> and Martijn Katerbarg (Sectigo).
>
> — Motion Begins —
>
> This ballot modifies the “Baseline Requirements for the Issuance and Management of Publicly-Trusted
> S/MIME Certificates” (“S/MIME Baseline Requirements”), based on Version 1.0.10.
>
> MODIFY the Baseline Requirements as specified in the following Redline:
>
> https://github.com/cabforum/smime/
> compare/59687c5e3835f889cdbb0ff0f0a24cfffc684084...0ba137373f1c7cb1ac52981b6b155ffd1be52267
> <https://github.com/cabforum/smime/
> compare/59687c5e3835f889cdbb0ff0f0a24cfffc684084...0ba137373f1c7cb1ac52981b6b155ffd1be52267>
>
> — Motion Ends —
>
> This ballot proposes a Final Maintenance Guideline. The procedure for approval of this ballot is as
> follows:
>
> *Discussion (at least 7 days)*
>
> * Start time: July 2, 2025 at 18:00:00 UTC
> * End time: July 11, 2025 at 18:00:00 UTC
>
>
> *Voting for Approval*
>
> * Start time: July 14, 2025 at 17:00:00 UTC
> * End time: July 21, 2025 at 17:00:00 UTC
>
> --
> You received this message because you are subscribed to the Google Groups "S/MIME Certificate WG -
> Public (CA/B Forum)" group.
> To unsubscribe from this group and stop receiving emails from it, send an email to smcwg-
> public+un...@groups.cabforum.org <mailto:smcwg-public...@groups.cabforum.org>.
> BL1PR14MB5143BAF941B46B571609C556E54AA%40BL1PR14MB5143.namprd14.prod.outlook.com <https://
> groups.google.com/a/groups.cabforum.org/d/msgid/smcwg-public/
> BL1PR14MB5143BAF941B46B571609C556E54AA%40BL1PR14MB5143.namprd14.prod.outlook.com?
> utm_medium=email&utm_source=footer>.

Michael Guenther

unread,
Jul 15, 2025, 4:30:48 AMJul 15
to smcwg-...@groups.cabforum.org
smime.p7m

Tim Hollebeek

unread,
Jul 15, 2025, 11:19:00 AMJul 15
to smcwg-...@groups.cabforum.org

DigiCert votes YES on SMC-013.

 

-Tim

 

From: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>

Sent: Saturday, July 12, 2025 11:52 AM
To: smcwg-...@groups.cabforum.org

--

You received this message because you are subscribed to the Google Groups "S/MIME Certificate WG - Public (CA/B Forum)" group.

Ben Wilson

unread,
Jul 15, 2025, 1:12:04 PMJul 15
to smcwg-...@groups.cabforum.org
Mozilla votes "Yes" on Ballot SMC-013.

--

Kateryna Aleksieieva

unread,
Jul 16, 2025, 9:28:14 AMJul 16
to smcwg-...@groups.cabforum.org

Certum votes YES on Ballot SMC013

 

Kind regards,

Kateryna Aleksieieva

From: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>

Sent: Saturday, July 12, 2025 5:52 PM
To: smcwg-...@groups.cabforum.org

--

Marco Schambach

unread,
Jul 16, 2025, 10:22:12 AMJul 16
to smcwg-...@groups.cabforum.org

IdenTrust votes “Yes” on SMC013

 

Marco S.

TrustID Program Manager

 

From: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>

Sent: Saturday, July 12, 2025 11:52 AM
To: smcwg-...@groups.cabforum.org

--

Dimitris Zacharopoulos (HARICA)

unread,
Jul 16, 2025, 11:15:25 AMJul 16
to 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum)
HARICA votes "yes" to ballot SMC013.

--

Guillaume Amringer

unread,
Jul 17, 2025, 12:43:09 PMJul 17
to smcwg-...@groups.cabforum.org
Carillon Information Security inc. votes yes on SMC013

-----Original Message-----
From: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>
Sent: 12 juillet 2025 11:52
To: smcwg-...@groups.cabforum.org
Subject: [Smcwg-public] [Voting for Approval] Ballot SMC013: Enable PQC Algorithms for S/MIME

Ballot SMC013: Enable PQC Algorithms for S/MIME

Summary:

This ballot introduces specifications for the use of two post-quantum cryptography (PQC) algorithms, as standardized by the U.S. National Institute of Standards and Technology (NIST), in the S/MIME BR:

* ML-DSA, or Module-Lattice-Based Digital Signature Algorithm, a digital signature scheme; and
* ML-KEM, or Module-Lattice-Based Key-Encapsulation Mechanism, a key encapsulation mechanism.


The ballot specifies single-key/non-hybrid PQC certificates that do not rely upon pre-quantum algorithms.


The ballot is intended to enable experimentation by Certificate Issuers with PQC certificates; noting that additional requirements on the use of PQC may be imposed by Root programs.


This ballot is proposed by Stephen Davidson (DigiCert) and endorsed by Andreas Henschel (D-Trust) and Martijn Katerbarg (Sectigo).

— Motion Begins —

This ballot modifies the “Baseline Requirements for the Issuance and Management of Publicly-Trusted S/MIME Certificates” (“S/MIME Baseline Requirements”), based on Version 1.0.10.

MODIFY the Baseline Requirements as specified in the following Redline:



https://github.com/cabforum/smime/compare/59687c5e3835f889cdbb0ff0f0a24cfffc684084...0ba137373f1c7cb1ac52981b6b155ffd1be52267

— Motion Ends —

This ballot proposes a Final Maintenance Guideline. The procedure for approval of this ballot is as follows:

Discussion (at least 7 days)

* Start time: July 2, 2025 at 18:00:00 UTC
* End time: July 11, 2025 at 18:00:00 UTC


Voting for Approval

* Start time: July 14, 2025 at 17:00:00 UTC
* End time: July 21, 2025 at 17:00:00 UTC



--
You received this message because you are subscribed to the Google Groups "S/MIME Certificate WG - Public (CA/B Forum)" group.
To unsubscribe from this group and stop receiving emails from it, send an email to smcwg-public...@groups.cabforum.org.
To view this discussion visit https://groups.google.com/a/groups.cabforum.org/d/msgid/smcwg-public/BL1PR14MB5143BAF941B46B571609C556E54AA%40BL1PR14MB5143.namprd14.prod.outlook.com <https://groups.google.com/a/groups.cabforum.org/d/msgid/smcwg-public/BL1PR14MB5143BAF941B46B571609C556E54AA%40BL1PR14MB5143.namprd14.prod.outlook.com?utm_medium=email&utm_source=footer> .

大野 文彰

unread,
Jul 18, 2025, 12:58:21 AMJul 18
to smcwg-...@groups.cabforum.org

SECOM Trust Systems votes YES on Ballot SMC013.

 

Best regards,

 

ONO Fumiaki / 大野 文彰

SECOM Trust Systems CO., LTD.

 

From: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>

Sent: Sunday, July 13, 2025 12:52 AM
To: smcwg-...@groups.cabforum.org

--

You received this message because you are subscribed to the Google Groups "S/MIME Certificate WG - Public (CA/B Forum)" group.
To unsubscribe from this group and stop receiving emails from it, send an email to smcwg-public...@groups.cabforum.org.

peter.mez...@gmail.com

unread,
Jul 18, 2025, 3:46:10 AMJul 18
to S/MIME Certificate WG - Public (CA/B Forum), Stephen Davidson

Disig votes „YES“ on Ballot SMC013: Enable PQC Algorithms for S/MIME.

Regards

Peter Miskovic


Dátum: streda 2. júla 2025, čas: 23:15:07 UTC+2, odosielateľ: Stephen Davidson

Tom Zermeno

unread,
Jul 18, 2025, 9:34:34 AMJul 18
to smcwg-...@groups.cabforum.org

SSL.com votes YES on SMC013.

 

Thanks!

 

Tom

SSL.com

 

From: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>

Sent: Saturday, July 12, 2025 10:52 AM
To: smcwg-...@groups.cabforum.org

--

Zurina Zolkaffly

unread,
Jul 20, 2025, 8:33:13 PMJul 20
to smcwg-...@groups.cabforum.org
MSC Trustgate.com votes YES on SMC013.

From: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>
Sent: Saturday, July 12, 2025 11:51 PM
To: smcwg-...@groups.cabforum.org <smcwg-...@groups.cabforum.org>

Janet Hines

unread,
Jul 21, 2025, 11:47:16 AMJul 21
to smcwg-...@groups.cabforum.org

VikingCloud votes YES on SMC-013.

 

From: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>
Date: Saturday, July 12, 2025 at 11:52 AM
To: smcwg-...@groups.cabforum.org <smcwg-...@groups.cabforum.org>
Subject: [Smcwg-public] [Voting for Approval] Ballot SMC013: Enable PQC Algorithms for S/MIME

Caution: This email originated from outside of the organization. Do not click links or open attachments unless you recognize the sender and know the content is safe.

 


Ballot SMC013: Enable PQC Algorithms for S/MIME

Summary: 

This ballot introduces specifications for the use of two post-quantum cryptography (PQC) algorithms, as standardized by the U.S. National Institute of Standards and Technology (NIST), in the S/MIME BR:

  • ML-DSA, or Module-Lattice-Based Digital Signature Algorithm, a digital signature scheme; and
  • ML-KEM, or Module-Lattice-Based Key-Encapsulation Mechanism, a key encapsulation mechanism.


The ballot specifies single-key/non-hybrid PQC certificates that do not rely upon pre-quantum algorithms.


The ballot is intended to enable experimentation by Certificate Issuers with PQC certificates; noting that additional requirements on the use of PQC may be imposed by Root programs.


This ballot is proposed by Stephen Davidson (DigiCert) and endorsed by Andreas Henschel (D-Trust) and Martijn Katerbarg (Sectigo).

— Motion Begins —

This ballot modifies the “Baseline Requirements for the Issuance and Management of Publicly-Trusted S/MIME Certificates” (“S/MIME Baseline Requirements”), based on Version 1.0.10.

MODIFY the Baseline Requirements as specified in the following Redline:

 

https://github.com/cabforum/smime/compare/59687c5e3835f889cdbb0ff0f0a24cfffc684084...0ba137373f1c7cb1ac52981b6b155ffd1be52267

— Motion Ends —

This ballot proposes a Final Maintenance Guideline. The procedure for approval of this ballot is as follows:

Discussion (at least 7 days)

·       Start time: July 2, 2025 at 18:00:00 UTC

·       End time: July 11, 2025 at 18:00:00 UTC


Voting for Approval

·       Start time: July 14, 2025 at 17:00:00 UTC

·       End time: July 21, 2025 at 17:00:00 UTC

 

--
You received this message because you are subscribed to the Google Groups "S/MIME Certificate WG - Public (CA/B Forum)" group.
To unsubscribe from this group and stop receiving emails from it, send an email to smcwg-public...@groups.cabforum.org.
To view this discussion visit https://groups.google.com/a/groups.cabforum.org/d/msgid/smcwg-public/BL1PR14MB5143BAF941B46B571609C556E54AA%40BL1PR14MB5143.namprd14.prod.outlook.com.





Company Registration Details
VikingCloud is the registered business name of Sysxnet Limited. Sysxnet Limited is registered in Ireland under company registration number 147176 and its registered office is at 1st Floor, Block 71a, The Plaza, Park West Business Park, Dublin 12, Ireland.

Email Disclaimer
The information contained in this communication is intended solely for the use of the individual or entity to whom it is addressed and others authorized to receive it. It may contain confidential or legally privileged information. If you are not the intended recipient you are hereby notified that any disclosure, copying, distribution or taking any action in reliance on the contents of this information is strictly prohibited and may be unlawful. If you have received this communication in error, please notify us immediately by responding to this email and then delete it from your system. Sysxnet Limited is neither liable for the proper and complete transmission of the information contained in this communication nor for any delay in its receipt..

Karina Sirota Goodley

unread,
Jul 21, 2025, 12:40:27 PMJul 21
to smcwg-...@groups.cabforum.org

Microsoft votes no on ballot SMC013.

 

Our concern is that once included, any subsequent changes—particularly those involving cryptographic algorithm requirements—would be significantly more difficult to implement due to the codified nature of the BRs.

 

Additionally, the Windows platform does not currently support post-quantum cryptography (PQC). There is no established environment within Windows itself to facilitate meaningful testing of third-party PQC certificates.

 

Importantly, this position does not prevent proponents from conducting testing or experimentation. However, we do not believe these certificates should be trusted by default or chain to a root that is broadly trusted at this time.

 

 

Best,

Karina

 

Karina Sirota Goodley, MBA, MS

Security Program Manager 2

Trusted Root Program, AEP Trust and Governance

 

My working hours may not look like yours and after-hours responses neither required nor expected.

 

From: 'Stephen Davidson' via S/MIME Certificate WG - Public (CA/B Forum) <smcwg-...@groups.cabforum.org>

Sent: Saturday, July 12, 2025 10:52 AM
To: smcwg-...@groups.cabforum.org

Stephen Davidson

unread,
Jul 21, 2025, 4:51:00 PMJul 21
to smcwg-...@groups.cabforum.org

NOTICE OF REVIEW PERIOD


This Review Notice is sent pursuant to Section 4.1 of the CA/Browser Forum’s Intellectual Property Rights Policy (v1.3). This Review Period of 30 days is for one Final Maintenance Guidelines. The complete Draft Maintenance Guideline that is the subject of this Review Notice is attached to this email, and may be found at:

https://cabforum.org/uploads/CA-Browser-Forum-SMIMEBR-1.0.11-Redline.pdf

Summary of Review
Ballot for Review: 
SMC013: Enable PQC Algorithms for S/MIME

Start of Review Period: 2025-07-21 20:00:00 UTC
End of Review Period: 2025-08-20 20:00:00 UTC

Members with any Essential Claim(s) to exclude must forward a written Notice to Exclude Essential Claims to the Working Group Chair (email to Iñigo Barreira ) and also submit a copy to the CA/B Forum public mailing list (email to public at cabforum.org) before the end of the Review Period.


For details, please see the current version of the CA/Browser Forum Intellectual Property Rights Policy.


(An optional template for submitting an Exclusion Notice is available at https://cabforum.org/wp-content/uploads/Template-for-Exclusion-Notice.pdf)

CA-Browser-Forum-SMIMEBR-1.0.11-Redline.pdf
Reply all
Reply to author
Forward
0 new messages