[Bug 474549] Review Request: ca-cacert.org - CAcert.org CA root certificates

bugzilla at redhat.com bugzilla at redhat.com
Fri Dec 19 11:55:08 UTC 2008


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.


https://bugzilla.redhat.com/show_bug.cgi?id=474549





--- Comment #4 from Matthias Saou <matthias at rpmforge.net>  2008-12-19 06:55:07 EDT ---
Just got a semi-official answer from Tomáš Trnka :

--

[... Matthias ...]
> IANAL, which is why I'm asking here, but it seems quite strange to not
> be able to distribute the root certificates if the goal is to some day
> have them distributed with major web browsers...  

Hello!

Yes, this is correct. The current NRPDaL doesn't permit redistribution. This 
is because CAcert is currently undergoing an audit and the NRPDaL is supposed 
to pass this audit too. Non-related parties are really not supposed to 
distribute anything, but Fedora is not a "non-related party" -  third-party 
software vendors are to be covered (and permitted cert redistribution) in the 
3PVDaL, which is currently work-in-progress. As soon as the policy group 
finishes the work and the 3PVDaL passes to DRAFT (active) status, the problem 
mentioned by you will be solved.

--

So I'm unsure what to do about this... leave this review open until things
change? Close it then reopen it once it can move forward again?

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.




More information about the Fedora-package-review mailing list