Let's Encrypt root certificate trusted by Mozilla
bugzilla.mozilla.org
Let's Encrypt root certificate trusted by Mozilla
1–10 of 166 posts
Re: Let's Encrypt root certificate trusted by Mozilla
#2For that to happen they have to be added as a trusted CA in most major platforms (and Firefox which has their own CA store for some reason).
Re: Let's Encrypt root certificate trusted by Mozilla
#3Just to be clear, this is important because eventually Let's Encrypt wants to no longer have to cross-sign their certificates for them to be considered valid. For that to happen they have to be added as a trusted CA in most major platforms (and Firefox which has their own CA store for some reason).
I saw their aim is to migrate to their own root CA by the end of the year, but i wonder if this is realistically feasible?
Re: Let's Encrypt root certificate trusted by Mozilla
#4Re: Let's Encrypt root certificate trusted by Mozilla
#5Re: Let's Encrypt root certificate trusted by Mozilla
#6Have any other browsers announced their intent to do the same?
Re: Let's Encrypt root certificate trusted by Mozilla
#7I think comodo had the idea to be added as a root CA by Mozilla first. They should sue.
[0] https://letsencrypt.org/2016/06/23/defending-our-brand.html
Re: Let's Encrypt root certificate trusted by Mozilla
#8Have any other browsers announced their intent to do the same?
Other browsers do not have their own certificate stores but use those provided by the OS. Next interesting things are whether Windows and Mac OS X add the root certificate. I think Linux distributions tend to follow Mozilla's trust.
Re: Let's Encrypt root certificate trusted by Mozilla
#9Have any other browsers announced their intent to do the same?
Other browsers do not have their own certificate stores but use those provided by the OS. Next interesting things are whether Windows and Mac OS X add the root certificate. I think Linux distributions tend to follow Mozilla's trust.
"It includes, among others, certificate authorities used by the Debian infrastructure and those shipped with Mozilla's browsers. "
RE: OSX - If you can get into Mozilla's trust stores, it's the same steps (and pro forma, more or less) [1]
[0] https://packages.debian.org/wheezy/ca-certificates
[1] https://www.apple.com/certificateauthority/ca_program.html
Re: Let's Encrypt root certificate trusted by Mozilla
#10I think comodo had the idea to be added as a root CA by Mozilla first. They should sue.