Eddy -- it's a worldwide security vulnerability. Just make an exception.
One time free revocation for any class 1 certs where the customer uses the
word "Heartbleed" in their revocation request. It's not too late to change
your mind.

-- Eric


On Thu, Apr 24, 2014 at 1:24 PM, Eddy Nigg <[email protected]> wrote:

> On 04/24/2014 08:15 PM, Eddy Nigg wrote:
>
>> Without leaking any more data from Netcraft I can tell you that the
>> revocation rate of StartSSL is in fact higher than any other CA except
>> GlobalSign
>>
>
> Sorry, this statement should have said higher than the average and not
> every CA.
>
>
> --
> Regards
> Signer:         Eddy Nigg, COO/CTO
>         StartCom Ltd. <http://www.startcom.org>
> XMPP:   [email protected] <xmpp:[email protected]>
> Blog:   Join the Revolution! <http://blog.startcom.org>
> Twitter:        Follow Me <http://twitter.com/eddy_nigg>
>
> _______________________________________________
> dev-security-policy mailing list
> [email protected]
> https://lists.mozilla.org/listinfo/dev-security-policy
>



-- 
konklone.com | @konklone <https://twitter.com/konklone>
_______________________________________________
dev-security-policy mailing list
[email protected]
https://lists.mozilla.org/listinfo/dev-security-policy

Reply via email to