On 2014-01-02 23:50, Paul Hoffman wrote: > On Jan 2, 2014, at 10:57 AM, Jacob Appelbaum <[email protected]> wrote: > >> I control the private key for the rouge CA that we created. > True. However, that rogue CA is not trusted in any root pile, right? You > holding a private key for a trusted CA was, appropriately a big deal. You > holding a private key for an untrusted CA is uninteresting. >
My understanding of what Jakob wrote is that he holds the key for a subordinate CA. Unless the CA that "signed" that subordinate has been removed from trust lists then that subordinate would still be useful, yes. _______________________________________________ therightkey mailing list [email protected] https://www.ietf.org/mailman/listinfo/therightkey
