Newsgroups: mozilla.dev.security.policy
From: 陈少举 <oshirisu....@gmail.com>
Date: Thu, 28 Jan 2010 17:24:33 -0800 (PST)
Local: Thurs, Jan 28 2010 8:24 pm
Subject: Re: CNNIC Root Inclusion
agree
On Jan 28, 3:05 am, Yuki Sea <yukiseal...@gmail.com> wrote: > On Jan 28, 1:28 am, Eddy Nigg <eddy_n...@startcom.org> wrote:
> > On 01/27/2010 07:11 PM, Nelson Bolyard: > > > On 2010-01-27 06:18 PST, Eddy Nigg wrote: > > >>> Even though this is mostly a technical forum, > > > It is? > > Technical in the sense of policies and CA practices. It's not a > > > I've seen MANY rants in past years from people who got infected by signed > > Sure, I think that the issues mentioned are a bit broader and haven't > > >>http://safebrowsing.clients.google.com/safebrowsing/diagnostic?client... > > >>http://www.siteadvisor.com/sites/cnnic.net.cn > > >>http://en.wikipedia.org/wiki/China_Internet_Network_Information_Cente... > > > I cannot determine, from the information presented on those pages, if CNNIC > > I nowhere seen anything about signed software, this is your (wrong) > > > I think we need to be very careful to avoid getting caught in the trap of > > That's why I requested to have this handled at the proper channels. > > -- > > Signer: Eddy Nigg, StartCom Ltd. > If we include this cert, PRC government can hijack any SSL session > We need to protect the user whether this is political or not. You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
| ||||||||||||||