Kyle Hamilton wrote:
> Please tell me how to completely disable all Mozilla Foundation
> included CAs without having to individually change the trust settings
> on all of them?  I can't trust Mozilla's certificate policy to protect
> my interests -- I can't trust Mozilla's policy to ensure that
> strictures that I originally relied on in the certificate issuance
> policies haven't been relaxed, thus compromising my own ability to
> trust the certificate issuers involved.

How would a policy which _ensures_ this be written?

> Alternatively, please tell me how I can auto-accept any presented root
> certificate in Firefox?  

Write an extension.

> How can I, as a user, determine if a certificate is DV versus IV or OV
> or EV without having to fight the user interface to find the
> information?

The EV distinction is clear. And EV exists precisely because the line 
between DV and IV/OV is fuzzy, and it would have been very difficult to 
correctly discern the difference programmatically.

Gerv
_______________________________________________
dev-tech-crypto mailing list
[email protected]
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to