Re: Audit Reminder Email Summary

2018-02-20 Thread Kathleen Wilson via dev-security-policy
Summary of audit statements that are due: Forwarded Message Subject: Summary of February 2018 Audit Reminder Emails Date: Tue, 20 Feb 2018 20:00:05 + (GMT) Mozilla: Audit Reminder Root Certificates: ISRG Root X1 Standard Audit:

Re: Root Store Policy 2.6

2018-02-20 Thread Ryan Sleevi via dev-security-policy
On Tue, Feb 20, 2018 at 6:19 PM, Wayne Thayer wrote: > Ryan, > > On Fri, Feb 16, 2018 at 3:19 PM, Ryan Sleevi wrote: > >> >> Hi Wayne, >> >> One point of possible clarification that should be undertaken is with >> respect to

Re: Root Store Policy 2.6

2018-02-20 Thread Wayne Thayer via dev-security-policy
Ryan, On Fri, Feb 16, 2018 at 3:19 PM, Ryan Sleevi wrote: > > Hi Wayne, > > One point of possible clarification that should be undertaken is with > respect to https://github.com/mozilla/pkipolicy/blob/master/rootstor > e/policy.md#8-ca-operational-changes > > While this section

RE: Root Store Policy 2.6

2018-02-20 Thread Stephen Davidson via dev-security-policy
Hello: I am following up regarding Ryan's comments relating to the DarkMatter external CAs signed by QuoVadis. In short: * QuoVadis has been transparent with Mozilla regarding these CAs throughout their existence, with the latest discussion occurring in the autumn of 2017 (see

Re: Firefox security too strict (HSTS?)?

2018-02-20 Thread beboyabella.kallfly--- via dev-security-policy
its been a whole day to search for a resolution. some of them i research in google entails with servers and stand alon computers. and i found a solution for this issue and its works like a charm. Solution No.2 and 3 from this website

Re: ComSign Root Renewal Request

2018-02-20 Thread Wayne Thayer via dev-security-policy
Based on this discussion, Mozilla is denying the ComSign Global Root CA inclusion request. I'd like to thank everyone for your constructive input into the discussion, and I'd like to thank ComSign for their patience and work to address issues as they have been discovered. ComSign may submit a