The next step, if Symantec wish to continue to use their current PKI in the future, should be logging (ASAP) *all* of the certificates they issued to a CT log, then we'll know how deep is the rabbit hole. _______________________________________________ dev-security-policy mailing list dev-security-policy@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-security-policy
- Re: Symantec:... Jakob Bohm via dev-security-policy
- Re: Symantec:... Michael Casadevall via dev-security-policy
- Re: Symantec:... Jakob Bohm via dev-security-policy
- Re: Symantec:... Michael Casadevall via dev-security-policy
- Re: Symantec:... Michael Casadevall via dev-security-policy
- Re: Symantec:... Gervase Markham via dev-security-policy
- Re: Syman... Peter Bowen via dev-security-policy
- Re: Syman... Gervase Markham via dev-security-policy
- Re: Symantec:... Michael Casadevall via dev-security-policy
- Re: Symantec:... Gervase Markham via dev-security-policy
- Re: Symantec: Update Itzhak Daniel via dev-security-policy
- Re: Symantec: Update okaphone.elektronika--- via dev-security-policy
- Re: Symantec: Update mono.riot--- via dev-security-policy
- Re: Symantec: Update Andrew R. Whalley via dev-security-policy
- Re: Symantec: Update wizard--- via dev-security-policy
- Re: Symantec: Update urijah--- via dev-security-policy
- Re: Symantec: Update Gervase Markham via dev-security-policy
- Re: Symantec: Update okaphone.elektronika--- via dev-security-policy