Re: Permission to use Errata CAA Algorithm

2017-09-16 Thread Gervase Markham via dev-security-policy
On 15/09/17 20:24, j...@letsencrypt.org wrote: > We would like to ask the Mozilla and Google root programs on this list to > immediately grant at least temporary dispensation for CAs to implement the > CAA checking algorithm as described in this errata: > >

Re: StartCom inclusion request: next steps

2017-09-16 Thread mw--- via dev-security-policy
I want to give you some words from one of the "community side" (this is a personal opinion and may vary from other opinions inside the community). Trust is not something that you get, it is something that you earn. StartCom was distrusted because of serious issues with their old PKI and now