[Servercert-wg] Weekly github digest (Server Certificate Working Group)

2024-02-24 Thread Infrastructure Bot via Servercert-wg
Issues -- * cabforum/servercert (+1/-0/2) 1 issues created: - Support the dns-account-01 ACME challenge (by wthayer) https://github.com/cabforum/servercert/issues/486 2 issues received 2 new comments: - #484 Clarify when Root CAs may stop issuing CRLs (1 by aarongable)

Re: [Servercert-wg] Compromised/Weak Keys Ballot Proposal

2024-02-24 Thread Martijn Katerbarg via Servercert-wg
Thanks Wayne, >- The Debian vulnerability is more than 15 years old. If an Applicant submits >a Debian weak key at this point, they almost certainly have bigger security >issues. This is the bit I have problems with. Just because the applicant (probably) has bigger security issues, doesn’t

Re: [Servercert-wg] [EXTERNAL] Re: Compromised/Weak Keys Ballot Proposal

2024-02-24 Thread Bruce Morton via Servercert-wg
Hi Wayne, I will endorse this ballot. Thanks, Bruce. From: Servercert-wg On Behalf Of Wayne Thayer via Servercert-wg Sent: Saturday, February 24, 2024 12:38 PM To: CA/B Forum Server Certificate WG Public Discussion List Subject: [EXTERNAL] Re: [Servercert-wg] Compromised/Weak Keys Ballot

Re: [Servercert-wg] Compromised/Weak Keys Ballot Proposal

2024-02-24 Thread Wayne Thayer via Servercert-wg
> > I think it's safest to err on the side of caution and use the explicit > wording that you proposed. I've made that clarification in the PR at https://github.com/wthayer/servercert/pull/1/files I'm still seeking a second endorser. Thanks, Wayne On Fri, Feb 23, 2024 at 2:25 PM Tom Zermeno