Re: [Servercert-wg] Compromised/Weak Keys Ballot Proposal

2024-04-15 Thread Tomas Gustavsson via Servercert-wg
Thank you. I like the updated text, very clear for me. Regards, Tomas From: Wayne Thayer Sent: Tuesday, April 16, 2024 2:15:44 AM To: Tomas Gustavsson Cc: CA/B Forum Server Certificate WG Public Discussion List ; Clint Wilson Subject: Re: [Servercert-wg]

Re: [Servercert-wg] Compromised/Weak Keys Ballot Proposal

2024-04-15 Thread Wayne Thayer via Servercert-wg
Thank you Tomas, this is helpful feedback. I have updated the proposed language as follows: In the case of Debian weak keys vulnerability ( > https://wiki.debian.org/SSLkeys)), the CA SHALL reject all keys found at > https://github.com/cabforum/debian-weak-keys/ for each key type (e.g. > RSA,

Re: [Servercert-wg] Compromised/Weak Keys Ballot Proposal

2024-04-15 Thread Roman Fischer via Servercert-wg
Thanks Wayne for your efforts! I like the current wording very much. Kind regards Roman From: Servercert-wg On Behalf Of Wayne Thayer via Servercert-wg Sent: Freitag, 12. April 2024 23:36 To: Clint Wilson ; ServerCert CA/BF Subject: Re: [Servercert-wg] Compromised/Weak Keys Ballot Proposal