-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Am Di den  1. Apr 2014 um 16:02 schrieb Pierre-Elliott Bécue:
> > > But, arguing on the bug severity (between important/critical)
> > 
> > I accepted the downgrade to important. 
> 
> You didn't initially.

Yes. But I get convinced that even important is ok as there might be
different points of view on the security implication.

> > > I frankly agree with Thomas Koch about creating some specific packages for
> > > non trusted CA.
> > 
> > Would be a possible solution, yes. But this does not change the fact
> > that ca-certificates without cacert is somewhat useless.
> 
> Dear, there is many CA, not just CACert.

Yes, but can you prove that the users can trust in them? I cannot.

Regards
   Klaus
- -- 
Klaus Ethgen                              http://www.ethgen.ch/
pub  4096R/4E20AF1C 2011-05-16   Klaus Ethgen <[email protected]>
Fingerprint: 85D4 CA42 952C 949B 1753  62B3 79D0 B06F 4E20 AF1C
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=teGq
-----END PGP SIGNATURE-----


-- 
To UNSUBSCRIBE, email to [email protected]
with a subject of "unsubscribe". Trouble? Contact [email protected]

Reply via email to