I agree with this approach. Nothing of note was include after the domain
validation passed so making 1.3.7 the effective version makes sense.

-----Original Message-----
From: dev-security-policy
[mailto:dev-security-policy-bounces+jeremy.rowley=digicert.com@lists.mozilla
.org] On Behalf Of Gervase Markham
Sent: Thursday, January 12, 2017 9:45 AM
To: mozilla-dev-security-pol...@lists.mozilla.org
Subject: Policy 2.4 Proposal: Update required version number of Baseline
Requirements to 1.3.7

Point 12 of the Inclusion section requires conformance to the Baseline
Requirements version 1.3, released on 16th April 2015. The current version
is 1.4.1.

I propose changing to version 1.3.7. This is the one before the version
which updated the domain validation requirements and which has had to be
walked back due to the IPR issues. Once the dust settles, we can look at
updating again. See the bug for more info on the logic here.

This is: https://github.com/mozilla/pkipolicy/issues/30

-------

This is a proposed update to Mozilla's root store policy for version 2.4.
Please keep discussion in this group rather than on Github. Silence is
consent.

Policy 2.3 (current version):
https://github.com/mozilla/pkipolicy/blob/2.3/rootstore/policy.md
Update process:
https://wiki.mozilla.org/CA:CertPolicyUpdates
_______________________________________________
dev-security-policy mailing list
dev-security-policy@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-security-policy

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
dev-security-policy mailing list
dev-security-policy@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-security-policy

Reply via email to