CABF Ballot 153 (no ocsp in shortlived certs), Pyrrhic victory? For (4 browsers and 4 CAs), against (1 browser and 17 CAs). Browsers ignore.
@Cryptoki @ivanristic CABForum regulates CA behavior, not browser behavior.
-
-
@BRIAN_____@Cryptoki Really? Why is “B” in the name then? -
@ivanristic@Cryptoki CAs and Browsers vote on rules imposed on CAs. -
@BRIAN_____@ivanristic and browsers ignore when doesn't go their way :) -
@Cryptoki@ivanristic It was about allowing a CRL link instead of an OCSP link in SLCs. It didn't help/hurt any browser actually doing SLCs. -
@BRIAN_____@ivanristic saves mucho dinero for#LetsEncrypt -
@Cryptoki@ivanristic Yep, effectively the vote was about saving Let's Encrypt money. No surprise that most CAs didn't want to help them. -
@BRIAN_____@Cryptoki@ivanristic smaller certs are nice for service operators and users, too -
@hillbrad@Cryptoki@ivanristic The idea is that LE wouldn't revoke certs, just have an empty, long-cached CRL to minimize reqs from WinXP. - 3 more replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.