Re: Explicitly distrusted certificates in certdata.txt (NSS built-in root CA certificate list)

2011-10-11 Thread Ludwig Nussel
Wan-Teh Chang wrote: > Florian Weimer reported this issue to us. > > The certdata.txt file in the NSS source tree > (http://mxr.mozilla.org/security/source/security/nss/lib/ckfw/builtins/certdata.txt) > is the master source of the NSS built-in trusted root CA list, so > people have written scripts

Re: Explicitly distrusted certificates in certdata.txt (NSS built-in root CA certificate list)

2011-10-11 Thread Gervase Markham
On 11/10/11 05:02, Nelson B Bolyard wrote: > I'd say it's going to be difficult for the typical scripting language to do > the recommended instructions. How about putting the distrusted certs and > their trust objects in a separate file in the CVS repository? What particularly do you think is dif