Eddy -- it's a worldwide security vulnerability. Just make an exception. One time free revocation for any class 1 certs where the customer uses the word "Heartbleed" in their revocation request. It's not too late to change your mind.
-- Eric On Thu, Apr 24, 2014 at 1:24 PM, Eddy Nigg <[email protected]> wrote: > On 04/24/2014 08:15 PM, Eddy Nigg wrote: > >> Without leaking any more data from Netcraft I can tell you that the >> revocation rate of StartSSL is in fact higher than any other CA except >> GlobalSign >> > > Sorry, this statement should have said higher than the average and not > every CA. > > > -- > Regards > Signer: Eddy Nigg, COO/CTO > StartCom Ltd. <http://www.startcom.org> > XMPP: [email protected] <xmpp:[email protected]> > Blog: Join the Revolution! <http://blog.startcom.org> > Twitter: Follow Me <http://twitter.com/eddy_nigg> > > _______________________________________________ > dev-security-policy mailing list > [email protected] > https://lists.mozilla.org/listinfo/dev-security-policy > -- konklone.com | @konklone <https://twitter.com/konklone> _______________________________________________ dev-security-policy mailing list [email protected] https://lists.mozilla.org/listinfo/dev-security-policy

