Re: [cabfpub] CABG: Follow-up actions to the creation of the new Definitions and Glossary Working Group

2024-04-30 Thread Aaron Gable via Public
Let's Encrypt / ISRG intends to participate in the DGWG. On Mon, Apr 22, 2024 at 9:27 AM Dimitris Zacharopoulos (HARICA) via Public < public@cabforum.org> wrote: > > Dear Members, > > I have added the approved Charter of the Definitions and Glossary > Working Group (DGWG) to the main GitHub

Re: [cabfpub] Highlight repeated non-acceptable practices, clarify requirements and discuss about DTPs

2024-01-11 Thread Aaron Gable via Public
For the sake of discussion, here's a concrete proposal for how to easily clarify that use of a public (third-party) DNS resolver is forbidden: Add to Section 3.2.2.4, immediately after the two numbered sentences: "All DNS queries conducted in the course of validation MUST be made from the CA to

Re: [cabfpub] Ballot FORUM-019 v.2 - Amend Server Certificate Working Group Charter - VOTING PERIOD

2023-11-29 Thread Aaron Gable via Public
ISRG / Let's Encrypt votes Yes. On Mon, Nov 27, 2023 at 7:44 AM Ben Wilson via Public wrote: > The voting period for Ballot FORUM-019 v.2 starts today. Votes must be > cast on the Forum public list in accordance with the Forum's Bylaws. > Voting will conclude at 16:00 UTC on 4 December 2023. >

Re: [cabfpub] Voting begins for Ballot Forum-18 v3 - Update CA/B Forum Bylaws to version 2.5

2023-07-18 Thread Aaron Gable via Public
Let's Encrypt / ISRG votes "yes" on Ballot Forum-18 v3. On Thu, Jul 13, 2023 at 1:43 AM Dimitris Zacharopoulos (HARICA) via Public < public@cabforum.org> wrote: > This message begins the voting period for ballot Forum-18 v3. > > Dimitris. > > Purpose of the Ballot > The Forum has identified and

[cabfpub] Microsoft and Baseline OCSP Next Update Requirements

2020-12-17 Thread Aaron Gable via Public
Hi everyone, The Microsoft Trusted Root Program Requirements ( https://docs.microsoft.com/en-us/security/trusted-root/program-requirements, henceforth MS) contain the following language in MS§3.C.2: > 3.C.2. CAs that issue Server Authentication certificates must support the following OCSP

Re: [cabfpub] Separate GitHub Repositories for Each Working Group

2020-10-07 Thread Aaron Gable via Public
I have just a couple questions, none of which I think are important enough to count as objections or block this proposal from moving forward: 1) Has the Infrastructure Subcommittee considered the option of using `git filter-branch` (or its easier-to-use unofficial cousin, git-filter-repo: