Re: Microsec: Misissuance of 2 CISCO VPN server authentication certificates

2020-11-20 Thread Sándor dr . Szőke via dev-security-policy
See further information in the following Mozilla bug: https://bugzilla.mozilla.org/show_bug.cgi?id=1676352 ___ dev-security-policy mailing list dev-security-policy@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-security-policy

Re: CCADB Proposal: Add field called Full CRL Issued By This CA

2020-11-20 Thread Ryan Hurst via dev-security-policy
On Thursday, November 19, 2020 at 3:13:58 PM UTC-8, Ben Wilson wrote: > FWIW - Here is a recent post on this issue from JC Jones - > https://github.com/mozilla/crlite/issues/43#issuecomment-726493990 > On Thu, Nov 19, 2020 at 4:00 PM Ryan Hurst via dev-security-policy < >

Re: FNMT: Public Discussion of Root Inclusion Request

2020-11-20 Thread Santiago Brox via dev-security-policy
El jueves, 19 de noviembre de 2020 a las 0:47:03 UTC+1, Matthias van de Meent escribió: > On Wed, 18 Nov 2020, 01:06 Ben Wilson via dev-security-policy, > wrote: > > > > All, > > > > This is to announce the beginning of the public discussion phase of the > > Mozilla root CA inclusion

RE: CCADB Proposal: Add field called Full CRL Issued By This CA

2020-11-20 Thread Corey Bonnell via dev-security-policy
Thanks for the additional context, Ben. Given the comment that you linked to, it appears that there’s a possibility that Mozilla will support sharded CRLs and that there may be logic included in the CRLLite crawler to timeout and remove the issuing CA from the crawler configuration if