RFC 9480: Certificate Management Protocol (CMP) Updates
This RFC has been replaced. Do not implement against it for new work — it was formally obsoleted by RFC 9810, RFC 9811.
Current document in this lineage: RFC 9810 — Internet X.509 Public Key Infrastructure -- Certificate Management Protocol (CMP); RFC 9811 — Internet X.509 Public Key Infrastructure -- HTTP Transfer for the Certificate Management Protocol (CMP)
In plain English — editorial summary, not part of the RFC
This document contains a set of updates to the syntax of Certificate Management Protocol (CMP) version 2 and its HTTP transfer mechanism. This document updates RFCs 4210, 5912, and 6712. The aspects of CMP updated in this document are using EnvelopedData instead of EncryptedValue, clarifying the handling of p10cr messages, improving the crypto agility, as well as adding new general message types, extended key usages to identify certificates for use with CMP, and well-known URI path segments. CMP version 3 is introduced to enable signaling support of EnvelopedData instead of EncryptedValue and signal the use of an explicit hash AlgorithmIdentifier in certConf messages, as far as needed.
Document record
- Document ID
- RFC9480
- Published
- November 2023
- Authors
- H. Brockhaus; D. von Oheimb; J. Gray
- Status
- PROPOSED STANDARD
- Stream
- IETF
- Area
- sec
- Pages
- 55
- Also known as
- —
Topics
Standards lineage
This document is one revision in a chain of 6 RFCs, each formally replacing the one before it.
Referenced by
2 later RFCs formally update or obsolete part of this document.
Related documents
Ranked automatically by shared keywords, IETF area and stream — not by editorial selection.
- RFC 9646Conveying a Certificate Signing Request (CSR) in a Secure Zero-Touch Provisioning (SZTP) Bootstrapping RequestCurrent
October 2024
- RFC 9733BRSKI with Alternative Enrollment (BRSKI-AE)Current
March 2025
- RFC 9481Certificate Management Protocol (CMP) AlgorithmsCurrent
November 2023
- RFC 9482Constrained Application Protocol (CoAP) Transfer for the Certificate Management ProtocolCurrent
November 2023
- RFC 9478Labeled IPsec Traffic Selector Support for the Internet Key Exchange Protocol Version 2 (IKEv2)Current
October 2023
- RFC 9483Lightweight Certificate Management Protocol (CMP) ProfileCurrent
November 2023
- RFC 9470OAuth 2.0 Step Up Authentication Challenge ProtocolCurrent
September 2023
- RFC 9493Subject Identifiers for Security Event TokensCurrent
December 2023
Also filed under
About this page
The document record above — title, authors, date, status, stream, area, relationships, DOI and errata — is imported verbatim from the public RFC Editor index. The “in plain English” section is editorial: written by The metasystema editorial team, not part of the RFC. Where the two differ, the RFC text governs.
Last checked against the RFC Editor index on . RFCs are never revised after publication; changes are issued as new documents.
Data sources · Editorial policy · Report a correction · What is an RFC?