Kyle Hamilton wrote: > Please tell me how to completely disable all Mozilla Foundation > included CAs without having to individually change the trust settings > on all of them? I can't trust Mozilla's certificate policy to protect > my interests -- I can't trust Mozilla's policy to ensure that > strictures that I originally relied on in the certificate issuance > policies haven't been relaxed, thus compromising my own ability to > trust the certificate issuers involved.
How would a policy which _ensures_ this be written? > Alternatively, please tell me how I can auto-accept any presented root > certificate in Firefox? Write an extension. > How can I, as a user, determine if a certificate is DV versus IV or OV > or EV without having to fight the user interface to find the > information? The EV distinction is clear. And EV exists precisely because the line between DV and IV/OV is fuzzy, and it would have been very difficult to correctly discern the difference programmatically. Gerv _______________________________________________ dev-tech-crypto mailing list [email protected] https://lists.mozilla.org/listinfo/dev-tech-crypto

