Re: RFC: Proposal: Install a /etc/ssl/cert.pem by default?
<<On Fri, 4 Jul 2014 00:14:48 +0200, Daniel Roethlisberger <daniel@roe.ch> said:
> [1] There is no such thing as a perfect CA bundle (i.e. both
> secure *and* usable) given how broken the whole CA system is
> these days.
So is anyone working on DANE support in libfetch and other base-system
utilities? Let's lead on this rather than just flaming about how CAs
suck....
-GAWollman
_______________________________________________
freebsd-security@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
討論串 (同標題文章)
完整討論串 (本文為第 18 之 29 篇):