At 3:02 PM +0300 10/3/08, Eddy Nigg wrote: >Here I wanted to add something...it's not that we should prevent >intermediate third-party CAs or cross-signing, but we need to apply the >same requirements on all CAs.
But we don't. All the legacy CAs have different requirements put on them. To me, this is a much bigger issue than the sub-CAs being discussed on this thread, and should be dealt with first. _______________________________________________ dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto