CurrentPROPOSED STANDARDIETF stream

RFC 9810: Internet X.509 Public Key Infrastructure -- Certificate Management Protocol (CMP)

In plain English — editorial summary, not part of the RFC

This document describes the Internet X.509 Public Key Infrastructure (PKI) Certificate Management Protocol (CMP). Protocol messages are defined for X.509v3 certificate creation and management. CMP provides interactions between client systems and PKI components such as a Registration Authority (RA) and a Certification Authority (CA). This document adds support for management of certificates containing a Key Encapsulation Mechanism (KEM) public key and uses EnvelopedData instead of EncryptedValue. This document also includes the updates specified in Section 2 and Appendix A.2 of RFC 9480. This document obsoletes RFC 4210, and together with RFC 9811, it also obsoletes RFC 9480. Appendix F of this document updates Section 9 of RFC 5912.

Document record

Document ID
RFC9810
Published
July 2025
Authors
H. Brockhaus; D. von Oheimb; M. Ounsworth; J. Gray
Status
PROPOSED STANDARD
Stream
IETF
Area
sec
Pages
116
Also known as
Obsoletes:
RFC 4210, RFC 9480
Updates:
RFC 5912

Topics

Standards lineage

This document is one revision in a chain of 6 RFCs, each formally replacing the one before it.

  1. RFC 2510 (1999)
  2. RFC 4210 (2005)
  3. RFC 6712 (2012)
  4. RFC 9480 (2023)
  5. RFC 9810 (2025)
  6. RFC 9811 (2025)

Read the full history of Internet X.509 Public Key Infrastructure -- HTTP Transfer for the Certificate Management Protocol (CMP)

Related documents

Ranked automatically by shared keywords, IETF area and stream — not by editorial selection.

Also filed under

About this page

The document record above — title, authors, date, status, stream, area, relationships, DOI and errata — is imported verbatim from the public RFC Editor index. The “in plain English” section is editorial: written by The metasystema editorial team, not part of the RFC. Where the two differ, the RFC text governs.

Last checked against the RFC Editor index on . RFCs are never revised after publication; changes are issued as new documents.

Data sources · Editorial policy · Report a correction · What is an RFC?

canonical URL: /rfc/9810-internet-x-509-public-key-infrastructure-certificate-management-protocol-cmp