http subversion URLs should be discontinued in favor of https URLs

Poul-Henning Kamp phk at phk.freebsd.dk
Fri Dec 15 08:40:02 UTC 2017


--------
In message <20171215050430.GT9701 at gmail.com>, Gordon Tetlow writes:

>Running a Root CA brings a huge amount of baggage and we are not mature
>enough in policy to build in a manner that would align with established
>practice for running a Root CA.

Since we would not be protecting People Who Can Sue Use For Big Damages
data, we wouldn't need to run a Root CA to that practice, which is mostly
about Blame Allocation and very little about actual security.

-- 
Poul-Henning Kamp       | UNIX since Zilog Zeus 3.20
phk at FreeBSD.ORG         | TCP/IP since RFC 956
FreeBSD committer       | BSD since 4.3-tahoe    
Never attribute to malice what can adequately be explained by incompetence.


More information about the freebsd-security mailing list