Paul Hoffman wrote:
A related question that I was intending to do some research on: if a trust anchor ("trusted root" in this thread) has an expiration date in the past, doe NSS still treat it as a trust anchor, or does it ignore it?

I can't say for certain because I haven't seen the code, but I would certainly hope it ignores it!

Then again, this situation almost never arises, because CAs create roots for a duration of 30 years, and then deprecate them after five years or so.

Gerv
_______________________________________________
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to