-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

On 04/25/2014 01:50 PM, Jan Lühr wrote:

> (i) I really hope, that you change your mind by doing revocations
> for free and charge for re-keying. This will break the 
> issuing-revocation-cycle, too, while going safety first.

This does not eliminate the perverse incentive to certificate holders.
 Revocation *and* reissuance need to be zero-cost in a circumstance
like this -- **whether or not** the initial certificate was paid for.

zw

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
Comment: Using GnuPG with Icedove - http://www.enigmail.net/
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=Rz2F
-----END PGP SIGNATURE-----
_______________________________________________
dev-security-policy mailing list
dev-security-policy@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-security-policy

Reply via email to