Re: SHA-1 with 'notAfter >= 2017-1-1'

2016-01-21 Thread Ryan Sleevi
On Tue, January 19, 2016 2:56 pm, s...@gmx.ch wrote: > Hi > > We're already having some discussions about SHA-1, but I'll split this > up into a new thread. > > The initial goal of bug 942515 was to mark certs as insecure, that are > valid 'notBefore >= 2016-01-01' (means issued to use in

SHA-1 with 'notAfter >= 2017-1-1'

2016-01-19 Thread sjw
Hi We're already having some discussions about SHA-1, but I'll split this up into a new thread. The initial goal of bug 942515 was to mark certs as insecure, that are valid 'notBefore >= 2016-01-01' (means issued to use in 2016+) AND also for certs that are valid 'notAfter >= 2017-1-1' (means