CA/Browser Forum

Server Certificate Working Group Ballots

Ballots by Status

Voting Period

There are no ballots with the status "Voting Period" in the Server Certificate Working Group

IPR Review Period

  • SC085: Require DNSSEC for CAA and DCV Lookups

Discussion Period

  • SC068: Sunset the Inclusion of Address and Routing Parameter Area Names

Draft / Under Consideration

There are no ballots with the status "New" in the Server Certificate Working Group
There are no ballots with the status "Pre-Ballot" in the Server Certificate Working Group

Passed

  • SC081v3: Introduce Schedule of Reducing Validity and Data Reuse Periods
  • SC084: DNS Labeled with ACME Account ID Validation Method
  • SC083: Winter 2024-2025 Cleanup Ballot
  • SC080v3: Sunset the use of WHOIS to identify Domain Contacts and relying DCV Methods
  • SC079v2: Allow more than one Certificate Policy in a Cross-Certified Subordinate CA Certificate
  • SC076v2: Clarify and Improve OCSP Requirements
  • SC078: Subject organizationName alignment for DBA / Assumed Name
  • SC077: Update WebTrust Audit name in Section 8.4 and References
  • SC075: Pre-sign linting
  • SC073: Compromised and Weak Keys
  • SC068: Allow VATEL and VATXI for organizationIdentifier
  • SC067: Require Multi-Perspective Issuance Corroboration
  • SC069: Clarify router and firewall logging requirements
  • SC065: Convert EVGs into RFC3647 format
  • SC063: Make OCSP optional, require CRLs and incentivize automation
  • SC064: Temporary Moratorium on New Certificate Consumer Memberships
  • SC066v4: Fall 2023 clean-up
  • SC062: Certificate profiles update
  • SC061: New CRL Entries must have a Revocation Reason Code
  • SC058: require distributionPoint in sharded CRLs
  • SC056: 2022 Cleanup

Cancelled

  • SC071: Subscriber Agreement and Terms of Use Consolidation
  • SC076: Clarify and Improve OCSP Requirements

Failed

  • SC082: Clarify CA Assisted DNS Validation under 3.2.2.4.7
  • SC074: Clarify CP/CPS structure according to RFC 3647
  • SC070: Clarify the use of DTPs for Domain Control Validation
  • SC059: Weak key guidance
  • SC060: Membership of ZT Browser

Information about Ballots

Latest releases
Server Certificate Requirements
SC-081v3: Introduce Schedule of Reducing Validity and Data Reuse Periods - May 21, 2025

BR v2.1.5

Code Signing Requirements
v3.8 - Aug 5, 2024

What’s Changed CSC-25: Import EV Guidelines to CS Baseline Requirements by @dzacharo in https://github.com/cabforum/code-signing/pull/38 Full Changelog: https://github.com/cabforum/code-signing/compare/v3.7...v3.8

S/MIME Requirements
v1.0.10 - Ballot SMC012 - Jul 2, 2025

Introduces a new method for validation of mailbox control, using ACME for S/MIME as defined in RFC 8823: Extensions to Automatic Certificate Management Environment for End-User S/MIME Certificates.

Network and Certificate System Security Requirements
v2.0 - Ballot NS-003 - Jun 26, 2024

Ballot NS-003: Restructure the NCSSRs in https://github.com/cabforum/netsec/pull/35

Edit this page
The Certification Authority Browser Forum (CA/Browser Forum) is a voluntary gathering of Certificate Issuers and suppliers of Internet browser software and other applications that use certificates (Certificate Consumers).