As a practical exercise in logic, pick any CA that issues EV Certificates and 
is CAB BR compliant. Look at the CA Certificate Policy Statement and Relying 
Party Agreement. It's irrelevant to cite the UX of the "normal" user without 
first look at the agreements and policy. For the most part it will say they are 
not concerned with content.  

There is no uniqueness assumed unless one uses a logically consistent Directory 
(X.500) which does not allow duplicate names. This is why people register 
multiple sound alike domain names.

The CA is only responsible to get you to the domain in the certificate and to 
verify (to some degree) additional identity or business attributes.
_______________________________________________
dev-security-policy mailing list
dev-security-policy@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-security-policy

Reply via email to