Re: Maximal validity of the test TLS certificate issued by a private PKI system

2018-12-13 Thread Sándor dr . Szőke via dev-security-policy
2018. december 13., csütörtök 7:35:32 UTC+1 időpontban Dean Coclin a következőt írta: > My opinion: > The CA/B Forum Baseline Requirements only apply to certificates which chain > to publicly trusted roots. This is made clear in the preamble of the > document: > > This document describes an in

Re: Maximal validity of the test TLS certificate issued by a private PKI system

2018-12-12 Thread Dean Coclin via dev-security-policy
certificate issuance from non publicly trusted hierarchies. Dean CoclinCA/B Forum Vice-Chair -Original Message- From: Sándor dr. Szőke via dev-security-policy To: mozilla-dev-security-policy Sent: Thu, Dec 13, 2018 1:36 pm Subject: Maximal validity of the test TLS certificate issued by

Re: Maximal validity of the test TLS certificate issued by a private PKI system

2018-12-12 Thread Wayne Thayer via dev-security-policy
On Wed, Dec 12, 2018 at 9:13 AM Sándor dr. Szőke via dev-security-policy < dev-security-policy@lists.mozilla.org> wrote: > > Thank you for the detailed answer, I think that the requirement is clear > for us now. > > The misunderstanding was caused by the different usage of the term 'Test > Certifi

Re: Maximal validity of the test TLS certificate issued by a private PKI system

2018-12-12 Thread Sándor dr . Szőke via dev-security-policy
Original Message- > From: dev-security-policy On > Behalf Of Sándor dr. Szoke via dev-security-policy > Sent: Tuesday, December 11, 2018 1:24 PM > To: mozilla-dev-security-pol...@lists.mozilla.org > Subject: Maximal validity of the test TLS certificate issued by a private > PKI

RE: Maximal validity of the test TLS certificate issued by a private PKI system

2018-12-11 Thread Doug Beattie via dev-security-policy
y-pol...@lists.mozilla.org Subject: Maximal validity of the test TLS certificate issued by a private PKI system It is not absolutely clear for us how to manage the test certificates which were issued by a CA where there are no certificate chains to a root certificate subject to the Baseline Require

Maximal validity of the test TLS certificate issued by a private PKI system

2018-12-11 Thread Sándor dr . Szőke via dev-security-policy
It is not absolutely clear for us how to manage the test certificates which were issued by a CA where there are no certificate chains to a root certificate subject to the Baseline Requirements (for example an independent test CA hierarchy). The BR wording is as follows: Test Certificate: A C