RFC 2986 和 RFC 4211 之间的区别,哪个是证书签名请求的规范?

Difference between RFC 2986 & RFC 4211 and which one is a spec for Certificate Signing Requests?

RFC 4211 seems to say that the RFC is meant to be a spec for CRMF (which I understand to be a protocol for transmitting a CSR), while RFC 2986 的摘要指定了 CertificationRequest 信息类型,这似乎也是 CSR。

什么是 CRMF,它与 CSR 有什么关系,哪个 RFC 最终规范了 CSR?

谢谢!

CRMF 是一种申请证书的方式SCEP is another, and so is ACME

Rfc 2986 指定 PKCS#10,这就是 CSR。大多数协议传输 PKCS#10 以及更多信息(例如身份验证和其他元数据)。