nanog mailing list archives

Re: Why are we still using the CA model? (Re: Microsoft deems all DigiNotar certificates untrustworthy, releases updates)


From: Martin Millnert <millnert () gmail com>
Date: Mon, 12 Sep 2011 17:17:55 +0200

On Mon, Sep 12, 2011 at 5:09 PM, Michael Thomas <mike () mtcc com> wrote:
And how long would it be before browsers allowed self-signed-but-ok'ed-using-dnssec-protected-cert-hashes?

As previously mentioned, Chrome >= v14 already does.

Regards,
Martin


Current thread: