Re: CCA Mauritius Root Certificate

From: Ish Sookun <ish_at_lsl.digital>
Date: Tue, 8 Dec 2015 22:09:14 +0400

Hi SM,

On 12/08/2015 09:37 PM, S Moonesamy wrote:
>
> (b) The press release at https://www.cca.mu/press_pki_06122010.htm
> states
> that there is a Memorandum of Understanding between the Root
> Certification
> Authority of India and Mauritius. In July 2014, the National
> Informatics
> Centre "improperly issued SSL certificates that could be used in
> attempts
> to spoof content, perform phishing attacks, or perform
> man-in-the-middle
> attacks" [3].
>

The Root CA of India was at some point being discussed [1] to be
included in Mozilla Firefox browser's bundled list [2] of CAs. Luckily,
the major security blunder that happened in 2014 stopped the inclusion.

Now, if the Root CA of Mauritius expresses its wish to be included in CA
list of Firefox. What will be the implications?

[1] https://bugzilla.mozilla.org/show_bug.cgi?id=511380
[2] https://mozillacaprogram.secure.force.com/CA/IncludedCACertificateReport

Regards,

-- 
Ish Sookun
I drink coffee & manage Linux servers
for lexpress.mu.
Received on Tue Dec 08 2015 - 18:09:36 PST

This archive was generated by hypermail 2.3.0 : Tue Dec 08 2015 - 18:18:01 PST