4 ms·
Mozilla has identified issues with CAs that are part of eIDAS. The severity of these issues can be debated, but the nice part of Mozilla's root program is that
by Jwarder 5y ago
Mozilla has identified issues with CAs that are part of eIDAS. The severity of these issues can be debated, but the nice part of Mozilla's root program is that these are publicly debated. For example, the community identified repeated issues with the CA Certinomis and after failures to improve they were distrusted. Is it a good thing that the EU says that doesn't matter and Certinomis certs must be trusted as part of eIDAS?
https://drive.google.com/file/d/1DgJe-Ku4u66JF2D6zha28tSKxPBzavyQ/view?usp=sharing https://drive.google.com/file/d/1DgJe-Ku4u66JF2D6zha28tSKxPB...
https://wiki.mozilla.org/CA/Certinomis_Issues https://wiki.mozilla.org/CA/Certinomis_Issues