On 13/10/15 19:39, R Kent James wrote: > Obviously have a "resource" implies that there is funding needed to > support this. My understanding is that in many cases, there is a cost to > certificate providers to have their certificates included in a root > store, that is applied to the expense of maintaining the root store. Is > that likely to be true here as well? Is there (or can there be) an > income stream associated with maintaining this email code bit, so that > the resource to maintain that is funded?
>From the start of Mozilla up until now, Mozilla has not charged CAs for inclusion into the root store (for any combination of trust bits). I believe other stores may have different policies, but I'm not certain. Gerv _______________________________________________ dev-security-policy mailing list [email protected] https://lists.mozilla.org/listinfo/dev-security-policy

