All,

This email commences a six-week public discussion of TrustAsia’s request to
include the following certificates as publicly trusted root certificates in
one or more CCADB Root Store Member’s program. This discussion period is
scheduled to close on August 16, 2023.

The purpose of this public discussion process is to promote openness and
transparency. However, each Root Store makes its inclusion decisions
independently, on its own timelines, and based on its own inclusion
criteria. Successful completion of this public discussion process does not
guarantee any favorable action by any root store.

Anyone with concerns or questions is urged to raise them on this CCADB
Public list by replying directly in this discussion thread. Likewise, a
representative of the applicant must promptly respond directly in the
discussion thread to all questions that are posted.

CCADB Case Number:  00000921
<https://ccadb.my.salesforce-sites.com/mozilla/PrintViewForCase?CaseNumber=00000921>;
Bugzilla:  1688854 <https://bugzilla.mozilla.org/show_bug.cgi?id=1688854>

Organization Background Information (listed in CCADB):

   -

   CA Owner Name: TrustAsia Technologies, Inc.
   -

   Website: https://www.trustasia.com/
   -

   Address: 3201 Building B. New Caohejing International Business Center,
   391 Guiping Rd, Shanghai, 200233 China
   -

   Problem Reporting Mechanism(s): rev...@trustasia.com
   -

   Organization Type: Private Corporation
   -

   Repository URL: https://repository.trustasia.com/

Certificates Requesting Inclusion:

   1.

   TrustAsia Global Root CA G3 (4096-bit RSA):


   -

   Certificate download links: (CA Repository
   
<https://repository.trustasia.com/repo/certs/rsa-g3/TrustAsiaGlobalRootCAG3.cer>,
   crt.sh
   
<https://crt.sh/?sha256=E0D3226AEB1163C2E48FF9BE3B50B4C6431BE7BB1EACC5C36B5D5EC509039A08>
   )
   -

   Use cases served/EKUs:
   -

      Server Authentication (TLS) 1.3.6.1.5.5.7.3.1
      -

      Client Authentication 1.3.6.1.5.5.7.3.2
      -

      Code Signing 1.3.6.1.5.5.7.3.3
      -

      Document Signing 1.3.6.1.4.1.311.10.3.12, 1.2.840.113583.1.1.5
      -

      Secure Email 1.3.6.1.5.5.7.3.4
      -

      Timestamping 1.3.6.1.5.5.7.3.8
      -

   Test websites:
   -

      Valid: https://ev-rsag3-valid.trustasia.com
      -

      Revoked: https://ev-rsag3-revoked.trustasia.com
      -

      Expired: https://ev-rsag3-expired.trustasia.com


   1.

   TrustAsia Global Root CA G4 (384-bit ECDSA):
   -

      Certificate download links: (CA Repository
      
<https://repository.trustasia.com/repo/certs/ecc-g4/TrustAsiaGlobalRootCAG4.cer>,
      crt.sh
      
<https://crt.sh/?sha256=BE4B56CB5056C0136A526DF444508DAA36A0B54F42E4AC38F72AF470E479654C>
      )
      -

      Use cases served/EKUs:
      -

         Server Authentication (TLS) 1.3.6.1.5.5.7.3.1
         -

         Client Authentication 1.3.6.1.5.5.7.3.2
         -

         Code Signing 1.3.6.1.5.5.7.3.3
         -

         Document Signing 1.3.6.1.4.1.311.10.3.12, 1.2.840.113583.1.1.5
         -

         Secure Email 1.3.6.1.5.5.7.3.4
         -

         Timestamping 1.3.6.1.5.5.7.3.8
         -

      Test websites:
      -

         Valid: https://ev-eccg4-valid.trustasia.com
         -

         Revoked: https://ev-eccg4-revoked.trustasia.com
         -

         Expired: https://ev-eccg4-expired.trustasia.com

Relevant Policy and Practices Documentation:

The following applies to both applicant root CAs:

   -


   
https://repository.trustasia.com/repo/cps/TrustAsia-Global-CP-CPS_EN_V1.6.1.pdf


Most Recent Self-Assessment:

The following applies to both applicant root CAs:

   -

   https://bugzilla.mozilla.org/attachment.cgi?id=9308645 (completed
   12/16/2022)

Audit Statements:

   -

   Auditor: Anthony KAM and associates ltd. <http://akamcpa.com/> (enrolled
   
<https://www.cpacanada.ca/en/business-and-accounting-resources/audit-and-assurance/overview-of-webtrust-services/licensed-webtrust-practitioners-international>
   through WebTrust)
   -

   Audit Criteria: WebTrust
   -

   Date of Audit Issuance: 10/17/2022
   -

   For Period Ending: 7/31/2022
   -

   Audit Statement(s):
   -

      Standard Audit
      
<https://www.cpacanada.ca/GenericHandlers/CPACHandler.ashx?AttachmentID=8e00c66a-8d66-4185-94e9-a0ef6a6e82f1>

      -

      BR (SSL) Audit
      
<https://www.cpacanada.ca/GenericHandlers/CPACHandler.ashx?AttachmentID=22fa052e-ee61-4134-9ae7-47e8570406e1>
      -

      EV SSL Audit
      
<https://www.cpacanada.ca/GenericHandlers/CPACHandler.ashx?AttachmentID=5d02db36-be0f-45e1-9fb7-7c2af571301c>
      -

      BR (Code Signing) Audit
      
<https://www.cpacanada.ca/GenericHandlers/CPACHandler.ashx?AttachmentID=21793782-d73e-4eac-b320-7307bc3e898f>

Risk-vs-Value Justification:

   -

   https://bugzilla.mozilla.org/attachment.cgi?id=9323860

Thank you,


Ben Wilson, on behalf of the CCADB Steering Committee

-- 
You received this message because you are subscribed to the Google Groups 
"CCADB Public" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to public+unsubscr...@ccadb.org.
To view this discussion on the web visit 
https://groups.google.com/a/ccadb.org/d/msgid/public/CA%2B1gtaZYNFLD3%3DDx5RsDM0PXwuF9J%3DmC4EMW8x%3DHR7T8dPw4_Q%40mail.gmail.com.

Reply via email to