Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

CNNIC Root Inclusion: the Conclusion?

15 views
Skip to first unread message

makrober

unread,
Feb 5, 2010, 7:57:57 AM2/5/10
to dev-secur...@lists.mozilla.org
I propose that the long and extensive discussion of the subject,
here and on bugzilla, suggests the following general conclusion:

As the number of certificate issuers (with different profiles and
motivations), and the population of users (with different security
requirements and threat models) grows, a point has been (or will be?)
reached, where the current concept of a "Universal Trusted Third Party",
one that is accepted by a software provider on behalf of, and
distributed to, all its users, is becoming (or will quickly become?)
inadequate.

Consequently, the existing model of certificate acceptance and
distribution must be re-examined, either now, or this will have
to be changed in the near future.

MacRober


0 new messages