Earlier quoted context omitted.
“distrust” is an established English words that means exactly what Google intends. “detrust” is, while not hard to figure out, an unnecessary neologism.
But "distrust" doesn't convey the full meaning. They're not talking about merely not trusting Symantec certificates; they're talking about removing existing trust in the certificates.
Chrome's Plan to Distrust Symantec Certificates
21–30 of 207 posts
Re: Chrome's Plan to Distrust Symantec Certificates
#22"including Thawte, VeriSign, Equifax, GeoTrust, and RapidSSL" RIP RapidSSL wildcard
I'm not sure what it says that Google doesn't trust the company that operates the registry for .com
Re: Chrome's Plan to Distrust Symantec Certificates
#23Earlier quoted context omitted.
When will google decide let's encrypt is not secure enough and start giving a warning around that.
Considering Google is a major sponsor of the project, I'd say likely never. Not to mention that Google has been pushing hard for https on all sites, which is exactly LE's goal.
Re: Chrome's Plan to Distrust Symantec Certificates
#24Earlier quoted context omitted.
Considering Google is a major sponsor of the project, I'd say likely never. Not to mention that Google has been pushing hard for https on all sites, which is exactly LE's goal.
Not only that, but they're doing things like Certificate Transparency - publishing every certificate they sign into public logs and they're funded and supported by some of the biggest names in online security and privacy. They're probably the most trustworthy CA on the planet.
If you want to passively monitor encrypted traffic on a massive scale and not get caught (other than via their log - and who is reading that to see if every server they have has been issued a cert unnecessarily, anyway?), LetsEncrypt is awesome. It's plausible to do this without LetsEncrypt, but they made it a lot easier.
Re: Chrome's Plan to Distrust Symantec Certificates
#25Earlier quoted context omitted.
“distrust” is an established English words that means exactly what Google intends. “detrust” is, while not hard to figure out, an unnecessary neologism.
But "distrust" doesn't convey the full meaning. They're not talking about merely not trusting Symantec certificates; they're talking about removing existing trust in the certificates.
Re: Chrome's Plan to Distrust Symantec Certificates
#26Re: Chrome's Plan to Distrust Symantec Certificates
#27One of the happiest days of my life was when a Symantec support person, very courteously, helped me remove every Symantec product from my computer.
https://support.norton.com/sp/en/us/home/current/solutions/v...
was a key component of my debloating efforts back in the XP days.
Re: Chrome's Plan to Distrust Symantec Certificates
#28"including Thawte, VeriSign, Equifax, GeoTrust, and RapidSSL" RIP RapidSSL wildcard
Re: Chrome's Plan to Distrust Symantec Certificates
#29I realize that the title here is what Google put on their blog, but it seems to me that "detrust" would be more accurate than "distrust".
Re: Chrome's Plan to Distrust Symantec Certificates
#30Earlier quoted context omitted.
“distrust” is an established English words that means exactly what Google intends. “detrust” is, while not hard to figure out, an unnecessary neologism.
But "distrust" doesn't convey the full meaning. They're not talking about merely not trusting Symantec certificates; they're talking about removing existing trust in the certificates.
“distrust” alone only communicates not trusting, true. But the word isn't alone, it is in the phrase “plan to distrust”, which communicates that the not-trusting is a change from the status quo that will occur in the future.