Live data from Hacker News

Let's Encrypt root certificate trusted by Mozilla

bugzilla.mozilla.org

11–20 of 166 posts

Re: Let's Encrypt root certificate trusted by Mozilla

#11
post #7
post #5

I think comodo had the idea to be added as a root CA by Mozilla first. They should sue.

Comodo also had the idea to trademark "Let's Encrypt" [0]. [0] https://letsencrypt.org/2016/06/23/defending-our-brand.html

That's the joke

Re: Let's Encrypt root certificate trusted by Mozilla

#14
post #3

Just to be clear, this is important because eventually Let's Encrypt wants to no longer have to cross-sign their certificates for them to be considered valid. For that to happen they have to be added as a trusted CA in most major platforms (and Firefox which has their own CA store for some reason).

Would be interesting if there's a roadmap for who's left to be added to. I saw their aim is to migrate to their own root CA by the end of the year, but i wonder if this is realistically feasible?

We have also applied to the Apple, Microsoft, Oracle, Blackberry, and Google root programs.

We had hoped to be accepted by all major programs by the end of this year, but even if that happened it would still take years for our root to sufficiently propagate.

Re: Let's Encrypt root certificate trusted by Mozilla

#18
post #13

It's about time that HN switches to Let's Encrypt.

Let's Encrypt is pretty great, but if you have the money get a paid SSL. Not all SSL certs are created equal.

> Let's Encrypt is pretty great, but if you have the money get a paid SSL. Not all SSL certs are created equal.

Say what? Besides the faux security of the green bar for an EV cert, what's the difference between a LetsEncrypt and a paid one? (non-EV)

Post reply on HN