[cabfpub] Pre-Ballot - Short-Life Certificates

Gervase Markham gerv at mozilla.org
Wed Oct 29 08:51:46 MST 2014


On 27/10/14 20:08, Doug Beattie wrote:
> If we're going to create a new type of certificate which is exempt from
> revocation checking we need to tag them as special - a new extension or
> something so that they can be processed differently.

Why? Legacy browsers will continue to treat them exactly the same
whether or not you mandate a new marker, and newer browsers which decide
to adopt special treatment will do so based on their maximum lifetime,
not on any other criteria.

Gerv


More information about the Public mailing list