AW: Policy 2.7 Proposal: Forbid Delegation of Email Validation for S/MIME Certificates

2019-10-27 Thread Buschart, Rufus via dev-security-policy
Von: Ryan Sleevi > On Fri, Oct 25, 2019 at 6:44 PM Buschart, Rufus > wrote: >> And while writing this email, I think I found one more problem: You are >> using the term "email account holder" >> which isn't defined anywhere. Who is the "email account holder"

AW: Policy 2.7 Proposal: Forbid Delegation of Email Validation for S/MIME Certificates

2019-10-25 Thread Buschart, Rufus via dev-security-policy
Von: Wayne Thayer On Thu, Oct 24, 2019 at 10:33 AM Buschart, Rufus wrote: >> One last remark: I might be the only one, but I'm not 100% sure what the >> "this verification" at the end of the last sentence refers to. >> Is "this verification" (a) the

AW: Policy 2.7 Proposal: Forbid Delegation of Email Validation for S/MIME Certificates

2019-10-24 Thread Buschart, Rufus via dev-security-policy
On Tue, Oct 22, 2019 at 4:23 PM Ryan Sleevi wrote: > On Tue, Oct 22, 2019 at 6:31 PM Wayne Thayer via dev-security-policy > wrote: >> Thanks Dimitris and Rufus. Would it satisfy your concern if the requirement >> was changed

AW: Policy 2.7 Proposal: Forbid Delegation of Email Validation for S/MIME Certificates

2019-10-22 Thread Buschart, Rufus via dev-security-policy
> > Sounds good. This was your proposed response to solving this issue > > back on May 13, so it's full circle :) > > > > > > I'm going to consider this issue resolved unless there are further > > comments. > > Just checking whether the following is acceptable. > > If a CA validates the