2026-03-19 - 2026-03-26
Overview
15 Issues created by 1 user
Opened
#3 Wire CredentialFrameworkProvider into PkiBootstrap without implementation-specific dependencies
Opened
#4 Define a first-class certificate profile engine for X.509 issuance
Opened
#5 Introduce approval workflows for issuance with assurance levels and M-of-N approval
Opened
#6 Add remote signing support as a first-class signing mode
Opened
#7 Design ACME integration on top of the profile and approval model
Opened
#8 Resolve the CRL_REVOKED_SERIAL vs SimpleAttributeSet.Builder semantic mismatch
Opened
#9 Refactor and harden WorkflowProofOfPossessionVerifier
Opened
#10 Clarify and fix workflow-state cleanup semantics on signing timeout
Opened
#11 Complete lifecycle operations currently exposed but not implemented
Opened
#12 Extend status-object support beyond CRL-only generation
Opened
#13 Replace free-form verification failure strings with stable reason codes
Opened
#14 Define a formal provider configuration catalogue for framework and crypto providers
Opened
#15 Harden audit and evidence posture for regulated PKI operations
Opened
#16 Standardize exception message style and failure taxonomy across the PKI module
Opened
#17 Add a conformance test matrix for X.509 issuance, PoP, revocation, and status generation