This proposal is related to all the discussion about how to select the correct list of root CA for Mozilla...
So this proposal would be that Mozilla would get away of imposing to all users a single built-in trusted CA, but instead distribute several trusted CA list, with a description of the origin of each list, how it is created, and let the users decide what is best for them.
This is clearly the way to do it.
In addition, the format of such list should be defined and documented, so that special-interest user communities can become their own "trust-list publishers".
Roger
_______________________________________________ mozilla-crypto mailing list [EMAIL PROTECTED] http://mail.mozilla.org/listinfo/mozilla-crypto
