Hallo Christoph,

am Thu, Jun 25, 2009 at 04:17:00AM +0200 hast du folgendes geschrieben:
> 2) As far as I can see, only ONE of DFN's root certs is "cross-signed"  
> by Deutsche Telekom, namely the "DFN-Verein PCA Global - G01".
> The others:
> DFN-Verein PCA Classic - G01
> DFN-Verein PCA Grid - G01
> DFN-Verein PCA Basic - G01
> are not covered by this, but are still very interesting.

the point here is:  I didn't do that because the universities I know are
phasing out the non-Global variants in favour of the (soon to be Mozilla
included, heh) Global one.  (I thought that was stated in bug report
already.)

Please give reasons to why those CAs are still used.  (:

> If you would consider inclusion of these 4 root certs, I'd add a OpenPGP 
> signed request.
> I've received offline copies of the fingerprints via several means:
> - printed in different editions of the "Linux Magazine"
> - via meeting with one of the persons working at DFN PKI.
> - via a DFN Forschungsbericht (printed book, which can be ordered at the DFN)
>
> My key in turn is signed by at least some Debian developers.

Verification of the DFN certs isn't hard for me neither.  ;-)

Kind regards,
Philipp Kern
-- 
 .''`.  Philipp Kern                        Debian Developer
: :' :  http://philkern.de                         Stable Release Manager
`. `'   xmpp:[email protected]                         Wanna-Build Admin
  `-    finger pkern/[email protected]

Attachment: signature.asc
Description: Digital signature

Reply via email to