Guide for building an EDDSA pki

Document Type Expired Internet-Draft (individual)
Authors Robert Moskowitz  , Henk Birkholz  , Michael Richardson 
Last updated 2021-03-08 (latest revision 2020-09-04)
Stream (None)
Intended RFC status (None)
Expired & archived
pdf htmlized (tools) htmlized bibtex
Stream Stream state (No stream defined)
Consensus Boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


This memo provides a guide for building a PKI (Public Key Infrastructure) using openSSL. Certificates in this guide can be either ED25519 or ED448 certificates. Along with common End Entity certificates, this guide provides instructions for creating IEEE 802.1AR iDevID Secure Device certificates.


Robert Moskowitz (
Henk Birkholz (
Michael Richardson (

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)