On Jul 11, 8:21 pm, Frank Hecker <[EMAIL PROTECTED]> wrote: > Frank Hecker wrote: > >GlobalSignhas submitted requests to include a replacement root > > certificate for an already-included root certificate (same public key, > > new expiry date) and to enable it and a secondGlobalSignroot for EV: > > >https://bugzilla.mozilla.org/show_bug.cgi?id=406794 > >https://bugzilla.mozilla.org/show_bug.cgi?id=406796 > <snip> > > I think we now have all the information we need to start the first > > public comment period for this request, so I'm formally declaring it > > open. > > The first comment period is over, and I've made a preliminary decision > to approve these requests; see my comments in the above-referenced bugs. > The second (one-week) comment period is now open.
The second comment period is now over, and based on my evaluation and comments thus far I'm formally approving these requests. I've filed bug 446407 against NSS to refresh the GlobalSign Root CA root cert, and bug 446409 against PSM to enable the refreshed GlobalSign Root CA root and the existing GlobalSign Root CA - R2 root for EV: https://bugzilla.mozilla.org/show_bug.cgi?id=446407 https://bugzilla.mozilla.org/show_bug.cgi?id=446409 Frank -- Frank Hecker _______________________________________________ dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto