New Owner for the CA Certificates Module

115 views
Skip to first unread message

Kathleen Wilson

unread,
Jan 12, 2022, 4:03:36 PM1/12/22
to dev-secur...@mozilla.org
All,

I posted the following in Mozilla’s governance group.

Please feel free to comment either here in dev-security-policy or in Mozilla’s governance group.

~~
All,

I propose to make Ben Wilson the new owner of the “CA Certificates” module. In his role at Mozilla, Ben has become responsible for most of Mozilla’s root inclusion process. In addition to updating the existing processes, Ben created the Certificate Change Prioritization process for determining the priority of root inclusion requests, and the Quantifying Value: Information Expected of New Applicants process for first-time root store applicants to provide sufficient information to help Mozilla determine if the benefit of including their root certificate is worth the risk of including it. Additionally, Ben has been performing most of Mozilla’s CA Application Process for over a year, including:
There are two modules related to Mozilla’s CA Program which govern the default set of certificates in Network Security Services (NSS) and distributed in Mozilla’s software products. They are:

1) CA Certificates
Description: Determine which root certificates should be included in Mozilla software products, which trust bits should be set on them, and which of them should be enabled for EV treatment. Evaluate requests from Certification Authorities (CAs) for inclusion or removal of root certificates, and for updating trust bit settings or enabling EV treatment for already included root certificates.
Current Owner: Kathleen Wilson -- Proposed Owner: Ben Wilson
Current Peer(s): Ben Wilson -- Proposed Peers: Kathleen Wilson


2) Mozilla CA Certificate Policy
Description: Definition and enforcement of policies governing Certification Authorities, their root certificates included in Mozilla software products, and intermediate and end-entity certificates within those CA hierarchies.
Owner: Kathleen Wilson -- no change
Peer(s): Ben Wilson – no change

Thanks,
Kathleen
~~

Kathleen Wilson

unread,
Jan 18, 2022, 8:27:43 PM1/18/22
to dev-secur...@mozilla.org, Kathleen Wilson
All,

I have made the proposed change to the CA Certificate module.

1) CA Certificates
Description: Determine which root certificates should be included in Mozilla software products, which trust bits should be set on them, and which of them should be enabled for EV treatment. Evaluate requests from Certification Authorities (CAs) for inclusion or removal of root certificates, and for updating trust bit settings or enabling EV treatment for already included root certificates.
Current Owner: Kathleen Wilson -- Proposed Owner: Ben Wilson
Current Peer(s): Ben Wilson -- Proposed Peers: Kathleen Wilson



Congratulations, Ben!

Thanks,
Kathleen
 
Reply all
Reply to author
Forward
0 new messages