Note that Epiphany users cannot opt out of using the CACert certificate
because their certificate manager is broken.

Do we *really* want to diverge from upstream here? I know CACert is a
great idea in theory, but Mozilla upstream has not added the certificate
and they have a long list of good reasons for doing so. Especially with
our recent security record in mind, we should think long and hard before
diverging from upstream in cases like this!

-- 
Sam Morris
http://robots.org.uk/

PGP key id 1024D/5EA01078
3412 EA18 1277 354B 991B  C869 B219 7FDB 5EA0 1078

Attachment: signature.asc
Description: This is a digitally signed message part

Reply via email to