I-D Action: draft-sharif-apki-agent-pki-01.txt
| Newsgroups | gmane.ietf.announce |
|---|---|
| Message-ID | <178783231098.814968.7312356631518391368@dt-datatracker-786f84c586-vck88> |
Internet-Draft draft-sharif-apki-agent-pki-01.txt is now available. Title: Agent Public Key Infrastructure (APKI): Certificate-Based Identity and Trust for Autonomous AI Agents Author: Raza Sharif Name: draft-sharif-apki-agent-pki-01.txt Pages: 31 Dates: 2026-08-27 Abstract: Autonomous artificial intelligence (AI) agents are increasingly performing actions on the Internet that require verifiable identity: financial transactions, regulated data access, tool invocations, and inter-agent coordination. Traditional Public Key Infrastructure (PKI) based on X.509 certificates was designed for human-operated clients and long-lived servers. It lacks primitives for graduated trust scoring, capability constraints, delegation chains, model provenance, and the ephemeral lifecycles characteristic of AI agents. This document defines Agent Public Key Infrastructure (APKI), a certificate-based identity and trust system for autonomous AI agents. APKI extends X.509v3 with five agent-specific extensions, defines the agent:// URI scheme for agent identification, specifies Agent Transparency Logs modelled on Certificate Transparency (RFC 9162), and provides mechanisms for cross-organizational trust federation. APKI is designed to be compatible with existing PKI deployments, SPIFFE workload identity, and the IETF WIMSE working group's specifications. The IETF datatracker status page for this Internet-Draft is: https://datatracker.ietf.org/doc/draft-sharif-apki-agent-pki/ There is also an HTMLized version available at: https://datatracker.ietf.org/doc/html/draft-sharif-apki-agent-pki-01 A diff from the previous version is available at: https://author-tools.ietf.org/iddiff?url2=draft-sharif-apki-agent-pki-01 Internet-Drafts are also available by rsync at: rsync.ietf.org::internet-drafts _______________________________________________ I-D-Announce mailing list -- [email protected] To unsubscribe send an email to [email protected]