- Requires a TSP managing the subject's remote QSCD to provide the corresponding qualified remote-device management service.
References and citations
- Supports the route-specific certificate profile checks for policy identifiers, QSCD qcStatement inclusion, and non-QSCD exclusion.
"The certificate shall include the qcStatement for QSCD"
- Supports the checklist items by tying the QSCD route to policy selection, device verification, certificate request controls, certificate profile signals, and CPS disclosure.
"whether the policy requires use of a QSCD"
- Supports the issuance evidence needed for QSCD certification status, QSCD-generated key pairs, third-party managed devices, imported keys, and private-key movement.
"verify that the device is certified as a QSCD"
- Supports the need to monitor QSCD status, document measures in the CPS, and treat loss of QSCD certification status as a validity-impacting change.
"measures in case of modification of the QSCD status"
- Defines QCP-n, QCP-l, QCP-n-qscd, QCP-l-qscd, QEVCP-w, QNCP-w, and QNCP-w-gen, including the QSCD-specific routes for natural and legal persons.
"private key related to the certified public key resides in the QSCD"
- Provides the EU legal context for qualified certificates and qualified signature or seal creation devices referenced by EN 319 411-2.
"electronic identification and trust services"