Package: ca-certificates Version: 20170717 Severity: normal Hi,
ca-certificates 20170717 added the "TUBITAK Kamu SM SSL Kok Sertifikasi - Surum 1" CA, but when that was added to nss it was restricted to a small set of domains[1]. Thus I wonder if it wouldn't be better to blacklist it from ca-certificates, since we can't encode this kind of constraint. [1] https://bugzilla.mozilla.org/show_bug.cgi?id=1349705 Cheers, Julien

