Context: Mozilla requires CAs to disclose all their intermediate certs. CAs are constantly failing to comply with this simple requirement.
-
-
-
'undisclosed' is not the same as 'not in CT logs' or 'not in crt.sh'
-
In this context not disclosed means not in the Mozilla CADB
-
I prefer 'not submitted to the CCADB' :) Potential bugs in Mozilla software are not CA's fault, even less bugs in Comodo's, Google's, etc.
-
Sure, if they were submitted to CADB but not recorded or were lost not the CAs fault.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.