Jonathan Schleifer wrote:
Dave Cridland <[email protected]> wrote:

Applications shouldn't be installing trust anchors without a lot of confirming with the user.

I'm not talking about an application installing a system-wide root
certificate. But if the StartCom certificate is included and used for
just that app, it only makes sense to add CACert as well.

No it doesn't, StartCom has completed their audit, and gone thru all of the rigors to be included in the browsers, CAcert has not.

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to