When a PKI cross-certifies with the Federal PKI Management Authority, and is an affiliate in good standing, a Relying Party operating an online application that utilizes digital certificates for electronic identity authentication may choose to trust that PKI's digital certificates at the Level(s) of Assurance asserted by those certificates. No other trust requirements are needed for the Relying Party to make that determination. Note: CBP stands for Commercial Best Practice.
Cross-Certified Entity / [Date Issued Cross-Cert] / Assurance Levels:
Department of the Treasury [January 11, 2011]
- FBCA Rudimentary, FBCA Basic
- Common Policy, Common Hardware, Common Devices, Common Authentication, Common High, Common cardAuth
Department of State [March 21, 2011]
- FBCA Rudimentary, FBCA Basic
- Common Policy, Common Hardware, Common Devices, Common Authentication, Common High
State of Illinois [July 5, 2011]
- FBCA Basic
- SHA-1 FRCA Policy, SHA-1 FRCA Hardware
ACES/IdenTrust [December 20, 2010]
- FBCA Basic, FBCA Medium
DoD External CA (ECA) * [March 7, 2011]
- SHA-1 FRCA Policy, SHA-1 FRCA Hardware, SHA-1 FRCA Devices
ACES/ORC, Inc. [March 9, 2011]
- FBCA Basic, FBCA Medium
US Patent & Trademark Office [December 20, 2010]
- FBCA Basic, FBCA Medium, FBCA Medium Hardware
- Common Authentication, Common cardAuth
Government Printing Office [March 9, 2011]
- FBCA Medium, FBCA Medium Hardware
- Common Authentication, Common cardAuth
- [December 15, 2010] FBCA Medium, FBCA Medium Hardware, FBCA Medium CBP, FBCA Medium Hardware CBP
- PIV-I Hardware, PIV-I cardAuth, PIV-I Content Signing, Common Devices
- [March 4, 2011] SHA-1 FRCA Medium CBP, SHA-1 FRCA Medium HW CBP, SHA-1 FRCA Policy, SHA-1 FRCA Hardware, SHA-1 FRCA Devices
DEA CSOS * [March 3, 2011]
- SHA-1 FRCA Policy
DoD Interoperability Root CA [March 3, 2011]
- SHA-1 FRCA Policy, SHA-1 FRCA Hardware, SHA-1 FRCA Devices
SAFE Bridge [March 4, 2011]
- FBCA Basic
- SHA-1 FRCA Medium CBP, SHA-1 FRCA Medium HW CBP
VeriSign
- [February 21, 2011] FBCA Rudimentary, FBCA Basic
- [March 4, 2011] SHA-1 FRCA Policy, SHA-1 FRCA Hardware, SHA-1 FRCA Devices, SHA-1 FRCA Authentication, SHA-1 FRCA cardAuth
- [January 19, 2010] FBCA Medium, FBCA Medium Hardware, FBCA Medium CBP, FBCA Medium Hardware CBP, PIV-I Hardware, PIV-I cardAuth, PIV-I Content Signing
Verizon Business
- [December 15, 2010] FBCA Basic, FBCA Medium, FBCA Medium CBP, FBCA Medium Hardware, FBCA Medium Hardware CBP
- [May 2011] PIV-I Hardware, PIV-I cardAuth, PIV-I Content Signing
Entrust, Inc.
- [December 20, 2010] FBCA Rudimentary, FBCA Basic, FBCA Medium, FBCA Medium Hardware
- [May 2011] PIV-I Hardware, PIV-I cardAuth, PIV-I Content Signing, Common Devices
* Issued cross-certificate allowing one-way trust