Re: Swiss Government root inclusion request

2017-12-01 Thread Wayne Thayer via dev-security-policy
I've placed this discussion on hold pending: 1. Updated audit statement specifying the audit period. 2. Updated CP/CPS including CAA information, BR compliance statement, and clearer specification of the domain validation procedures that are in use. Wayne >On Tuesday, November 28, 2017 at

Re: Swiss Government root inclusion request

2017-11-28 Thread Wayne Thayer via dev-security-policy
On Thursday, November 23, 2017 at 4:03:27 AM UTC-7, michael.vonn...@bit.admin.ch wrote: > Hi Matt > > Thank you for your statement. > > Let me try to clarify: > > In 3.2.2.4 we specify the Authorization by Domain Name Registrant as follows: > > 3.2.2.4 Authorization by Domain Name Registrant

AW: Swiss Government root inclusion request

2017-11-15 Thread Michael von Niederhäusern via dev-security-policy
Hi Wayne Thank you for the review of our CP/CPS. Please find our answers to your findings/questions below. >> I reviewed the CP/CPS, BR self assessment, audit statement, and other >> information provided as part of this request. Overall, I found the CPS and >> BR self assessment to be lacking

Re: Swiss Government root inclusion request

2017-11-14 Thread westmail24--- via dev-security-policy
Hello Wayne, At me the link on the pdf file is work correctly from Google Chrome ver. 49, but I cannot load this file in my post... ___ dev-security-policy mailing list dev-security-policy@lists.mozilla.org

AW: Swiss Government root inclusion request

2017-11-02 Thread Michael von Niederhäusern via dev-security-policy
<a...@mozilla.com> Cc: mozilla-dev-security-pol...@lists.mozilla.org Betreff: Re: Swiss Government root inclusion request On Thu, Nov 2, 2017 at 9:29 AM, Aaron Wu via dev-security-policy < dev-security-policy@lists.mozilla.org> wrote: > > * Audit: Annual audits are performed

Re: Swiss Government root inclusion request

2017-11-02 Thread Julien Cristau via dev-security-policy
On Thu, Nov 2, 2017 at 9:29 AM, Aaron Wu via dev-security-policy < dev-security-policy@lists.mozilla.org> wrote: > > * Audit: Annual audits are performed by KPMG according to the ETSI TS 102 > 042 for CA and BR audit criteria. > http://www.pki.admin.ch/public/25-01-2017-BIT-ZertES- >

Swiss Government root inclusion request

2017-11-02 Thread Aaron Wu via dev-security-policy
This request from the Swiss Government is to include the “Swiss Government Root CA III” root certificate, turn on the Websites trust bit, and enable EV treatment. The request is documented in the following bug: https://bugzilla.mozilla.org/show_bug.cgi?id=435026 BR Self Assessment is here: