nanog mailing list archives

Re: Why are we still using the CA model? (Re: Microsoft deems all DigiNotar certificates untrustworthy, releases updates)


From: Michael Thomas <mike () mtcc com>
Date: Mon, 12 Sep 2011 08:24:32 -0700

Martin Millnert wrote:
On Mon, Sep 12, 2011 at 5:09 PM, Michael Thomas <mike () mtcc com> wrote:
And how long would it be before browsers allowed self-signed-but-ok'ed-using-dnssec-protected-cert-hashes?

As previously mentioned, Chrome >= v14 already does.

The perils of coming in late in a thread :)

Mike


Current thread: