Hey folks,

Do we keep track of CA metadata such as:

* Date of last audit
* Auditor profile
* Canonical domain
* URL of CRL

Does the Mozilla Foundation do heartbeat checks on all CAs at regular
intervals?

Is there any infrastructure in place to remove non-responsive CAs or CAs
which fail audits?

Does the Mozilla Foundation accept complaints about misuse of certs issued
by CAs which have been approved for inclusion?

Is there somewhere else I should be asking these questions?

Cheers,

C.J.

-- 
moo.
_______________________________________________
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to