Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 15 Dec 2017 08:39:34 +0000
From:      "Poul-Henning Kamp" <phk@phk.freebsd.dk>
To:        Gordon Tetlow <gordon@tetlows.org>
Cc:        Peter Wemm <peter@wemm.org>, Yuri <yuri@rawbw.com>, RW <rwmaillists@googlemail.com>, Igor Mozolevsky <mozolevsky@gmail.com>, freebsd-security@freebsd.org
Subject:   Re: http subversion URLs should be discontinued in favor of https URLs
Message-ID:  <43607.1513327174@critter.freebsd.dk>
In-Reply-To: <20171215050430.GT9701@gmail.com>
References:  <97f76231-dace-10c4-cab2-08e5e0d792b5@rawbw.com> <5A303453.9050705@grosbein.net> <6c9d028c-ac1c-3fc6-8ea2-7ee22c7ffbe8@rawbw.com> <3138231.uiVPfnS2VB@overcee.wemm.org> <b581be6f-45da-224b-3f68-a27aa43eba14@rawbw.com> <34c748a4-acc5-f80b-29b7-7554389fa44c@wemm.org> <20171215050430.GT9701@gmail.com>

index | next in thread | previous in thread | raw e-mail

--------
In message <20171215050430.GT9701@gmail.com>, Gordon Tetlow writes:

>Running a Root CA brings a huge amount of baggage and we are not mature
>enough in policy to build in a manner that would align with established
>practice for running a Root CA.

Since we would not be protecting People Who Can Sue Use For Big Damages
data, we wouldn't need to run a Root CA to that practice, which is mostly
about Blame Allocation and very little about actual security.

-- 
Poul-Henning Kamp       | UNIX since Zilog Zeus 3.20
phk@FreeBSD.ORG         | TCP/IP since RFC 956
FreeBSD committer       | BSD since 4.3-tahoe    
Never attribute to malice what can adequately be explained by incompetence.


help

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?43607.1513327174>