On 2014-01-02 23:50, Paul Hoffman wrote:
> On Jan 2, 2014, at 10:57 AM, Jacob Appelbaum <[email protected]> wrote:
>
>> I control the private key for the rouge CA that we created.
> True. However, that rogue CA is not trusted in any root pile, right? You 
> holding a private key for a trusted CA was, appropriately a big deal. You 
> holding a private key for an untrusted CA is uninteresting.
>

My understanding of what Jakob wrote is that he holds the key for a
subordinate CA. Unless the CA that "signed" that subordinate has been
removed from trust lists then that subordinate would still be useful, yes.


_______________________________________________
therightkey mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/therightkey

Reply via email to