blob: 5e6ed6bc8df131343a8ec119911baf1188d6e43c [file] [log] [blame] [view]
# NDN Certificate Management Protocol (NDNCERT)
[![Build Status](https://travis-ci.org/named-data/ndncert.svg?branch=master)](https://travis-ci.org/named-data/ndncert)
NDN certificate management protocol (NDNCERT) enables automatic certificate management in
NDN. In Named Data Networking (NDN), every entity should have corresponding identity
(namespace) and the corresponding certificate for this namespace. Moreover, entities need
simple mechanisms to manage sub-identities and their certificates. NDNCERT provides flexible
mechanisms to request certificate from a certificate authority(CA) and, as soon as certificate
is obtained, mechanisms to issue and manage certificates in the designated namespace. Note that
NDNCERT does not impose any specific trust model or trust anchors. While the primary use case
of the developed protocol is to manage NDN testbed certificates, it can be used with any other
set of global and local trust anchors.
This specification provides details and packet formats to request certificates, create
certificates after one of the validation mechanism, and how the issued certificate is retrieved
by the original requester.
See [our GitHub wiki](https://github.com/named-data/ndncert/wiki/NDN-Certificate-Management-Protocol)
for more details.