On 23/11/15 15:57, Peter Bowen wrote: > I realize that Mozilla carved out allowance for not disclosing, but > the CA/Browser Forum did not adopt this, instead only exempting > technically constrained CAs from the audit requirement. Maybe this is > a place where the Mozilla policy can aligned with the BRs.
This sounds like an item for the policy v2.3 discussion, if it's not on there already. Kathleen? Gerv _______________________________________________ dev-security-policy mailing list [email protected] https://lists.mozilla.org/listinfo/dev-security-policy

