RFC 9589: On the Use of the Cryptographic Message Syntax (CMS) Signing-Time Attribute in Resource Public Key Infrastructure (RPKI) Signed Objects
In plain English — editorial summary, not part of the RFC
In the Resource Public Key Infrastructure (RPKI), Signed Objects are defined as Cryptographic Message Syntax (CMS) protected content types. A Signed Object contains a signing-time attribute, representing the purported time at which the object was signed by its issuer. RPKI repositories are accessible using the rsync and RPKI Repository Delta protocols, allowing Relying Parties (RPs) to synchronize a local copy of the RPKI repository used for validation with the remote repositories. This document describes how the CMS signing-time attribute can be used to avoid needless retransfers of data when switching between different synchronization protocols. This document updates RFC 6488 by mandating the presence of the CMS signing-time attribute and disallowing the use of the binary-signing-time attribute.
Document record
- Document ID
- RFC9589
- Published
- May 2024
- Authors
- J. Snijders; T. Harrison
- Status
- PROPOSED STANDARD
- Stream
- IETF
- Area
- ops
- Pages
- 9
- Also known as
- —
- Updates:
- RFC 6488
Topics
Related documents
Ranked automatically by shared keywords, IETF area and stream — not by editorial selection.
- RFC 9882Use of the ML-DSA Signature Algorithm in the Cryptographic Message Syntax (CMS)Current
October 2025
- RFC 9939PKCS #8: Private-Key Information Content TypesCurrent
February 2026
- RFC 8358Update to Digital Signatures on Internet-Draft DocumentsCurrent
March 2018
- RFC 7165Use Cases and Requirements for JSON Object Signing and Encryption (JOSE)Current
April 2014
- RFC 6664S/MIME Capabilities for Public Key DefinitionsCurrent
July 2012
- RFC 6019BinaryTime: An Alternate Format for Representing Date and Time in ASN.1Current
September 2010
- RFC 5754Using SHA2 Algorithms with Cryptographic Message SyntaxCurrent
January 2010
- RFC 5485Digital Signatures on Internet-Draft DocumentsUpdated
March 2009
Also filed under
About this page
The document record above — title, authors, date, status, stream, area, relationships, DOI and errata — is imported verbatim from the public RFC Editor index. The “in plain English” section is editorial: written by The metasystema editorial team, not part of the RFC. Where the two differ, the RFC text governs.
Last checked against the RFC Editor index on . RFCs are never revised after publication; changes are issued as new documents.
Data sources · Editorial policy · Report a correction · What is an RFC?