Mozilla サポートの検索

Avoid support scams. We will never ask you to call or text a phone number or share personal information. Please report suspicious activity using the “Report Abuse” option.

Learn More

このスレッドはアーカイブに保管されました。 必要であれば新たに質問してください。

Question about Root CA policy

  • 返信なし
  • 1 人がこの問題に困っています
  • 3 回表示
more options

I have a question about this: https://wiki.mozilla.org/CA:Problematic_Practices

Is it really a problematic practice if a CA issues wildcard certificates under IV. (Individual validation). Yes, I know that for example EV's can only be issued to organizations and not natural persons, but limiting wildcard certificates to organizations I think its a bit too far. At least the identity of the person using a wildcard certificate is visible in the certificate, so if a individual is using his cert for phishing purposes, it can be easily tracked and prosecuted.

Or is the wikipedia page a bit incorrect about this? Because for example StartSSL does issue wildcard certificates to individuals (IV).

I have a question about this: https://wiki.mozilla.org/CA:Problematic_Practices Is it really a problematic practice if a CA issues wildcard certificates under IV. (Individual validation). Yes, I know that for example EV's can only be issued to organizations and not natural persons, but limiting wildcard certificates to organizations I think its a bit too far. At least the identity of the person using a wildcard certificate is visible in the certificate, so if a individual is using his cert for phishing purposes, it can be easily tracked and prosecuted. Or is the wikipedia page a bit incorrect about this? Because for example StartSSL does issue wildcard certificates to individuals (IV).