Bug#647848: ca-certificates: no new CA should be accepted until proper procedure is defined

2012-02-15 Thread Thijs Kinkhorst
Hi, The Mozilla CA process is well documented, and perhaps streamlining a similar process for Debian ca-certificates, modeled after Mozilla's, might be the way to go. I don't think we should have a separate inclusion process from Mozilla. Mozilla has a well defined policy to include CA's.

Bug#647848: ca-certificates: no new CA should be accepted until proper procedure is defined

2011-12-14 Thread Michael Shuler
In my opinion, the first consideration of any new CA inclusion and subsequent update requests for ca-certificates should come from a verifiable representative of the CA organization (outside of additions/updates that come from Mozilla). The Mozilla CA process is well documented, and perhaps

Bug#647848: ca-certificates: no new CA should be accepted until proper procedure is defined

2011-11-06 Thread Raphael Geissert
Package: ca-certificates Severity: important Hi, Just to make this public, I believe no new CA should be accepted as long as a proper procedure isn't defined and guaranteed to remain in place (e.g. by automating whatever process is defined.) Reasoning being that with the exception of