-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Am Di den 1. Apr 2014 um 16:02 schrieb Pierre-Elliott Bécue: > > > But, arguing on the bug severity (between important/critical) > > > > I accepted the downgrade to important. > > You didn't initially.
Yes. But I get convinced that even important is ok as there might be different points of view on the security implication. > > > I frankly agree with Thomas Koch about creating some specific packages for > > > non trusted CA. > > > > Would be a possible solution, yes. But this does not change the fact > > that ca-certificates without cacert is somewhat useless. > > Dear, there is many CA, not just CACert. Yes, but can you prove that the users can trust in them? I cannot. Regards Klaus - -- Klaus Ethgen http://www.ethgen.ch/ pub 4096R/4E20AF1C 2011-05-16 Klaus Ethgen <[email protected]> Fingerprint: 85D4 CA42 952C 949B 1753 62B3 79D0 B06F 4E20 AF1C -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQGcBAEBCgAGBQJTOuJ+AAoJEKZ8CrGAGfasf2YL/ivlXM6fuPyLokoSmzW8eeE8 pM/TUqDfXCKZPE7JZUwwbn4KmBKi35BbrE0YFYUj6IAIQX7x2yxhNgd/fWabJNOe 4uPjx+KBQ2425ZzyGVg71mHGDR7MTuzdOw0BlrTawzd42QT0Z1KdHvT985+C4RSy mE/lr8OOqXaIJSui5EqhZYQQyAX6QsehhYSQefRotxxLjNN1f9qFOFV5wGZ+F0n5 9u93M31JfpwDAn6IVYNcr1A3qA8n0//jvpSleHlY7z+RPCN0Y8pO+N888TbGiq/c bNBe55vNtPc+OOc5qZSldFi0OkJ5aDtBxMJEA0fS2Wpo2kP6oIjZXMMQMhcuhTST 2V0MgRQlcCKr6bI8P18SvBIaVfUnvHkNFPVHGLmtdEdayjcJ7ZgvFbyKgcvzQM3l ZLdATVdmX/tYVo2hYgSKBkiv5D4waS/SrsPXMg3Fe2FeRHn6X8WTAiivxjk9axl3 r8Gozc8yg9LC3Nln8LtfiR3c+megyNrpP3Pl2LC5Og== =teGq -----END PGP SIGNATURE----- -- To UNSUBSCRIBE, email to [email protected] with a subject of "unsubscribe". Trouble? Contact [email protected]

