Feature #6966

Keep CACert.org's root certificate in the web browser?

Added by intrigeri 2014-03-22 09:33:43 . Updated 2014-04-09 20:41:58 .

Status:
Resolved
Priority:
Normal
Assignee:
Category:
Target version:
Start date:
2014-03-22
Due date:
% Done:

0%

Feature Branch:
Type of work:
Discuss
Blueprint:

Starter:
0
Affected tool:
Browser
Deliverable for:

Description

Once we import the latest Debian’s Iceweasel package, it won’t have CACert.org’s root certificate enabled anymore. Do we want to do differently on our side?


Subtasks


History

#1 Updated by intrigeri 2014-04-09 20:41:58

  • Status changed from Confirmed to Resolved

At the monthly meeting, we’ve seen that:

  • basically nobody cares much about it
  • nobody volunteered to re-add this certificate and maintain the patch
  • when it disappeared from Tails for 6 weeks ([[!tails_ticket 6704]]), nobody complained for other reasons that blocked access to labs.riseup.net (that was temporarily using a cacert-issued certificate, and had HSTS enabled)

=> we won’t reintroduce this root certificate ourselves in Tails.