Re: Please avoid S/MIME signatures when posting to this group

2016-10-24 Thread Mathias Tausig
; fixed, I will let you know. > > Gerv > ___ > dev-security-policy mailing list > dev-security-policy@lists.mozilla.org > https://lists.mozilla.org/listinfo/dev-security-policy -- DI Mathias Tausig Lehre und Forschung Kompetenzzentrum für IT-Security

Re: StartCom & Qihoo Incidents

2016-10-18 Thread Mathias Tausig
ip, might be more preferable than creating yet > another list. > > Just a thought ;) > ___ > dev-security-policy mailing list > dev-security-policy@lists.mozilla.org > https://lists.mozilla.org/listinfo/dev-security-policy --

Re: Which SHA-2 algorithm should be used?

2014-01-08 Thread Mathias Tausig
On Wednesday 08. January 2014 12:33:56 Kurt Roeckx wrote: > I'm not convinced there is a need for the CA certificates themselves to > start using SHA-2. I think the only thing we care about for those is > a preimage attack. SHA-1 still provides 160 bit of security for that. > Microsoft requires