Comment 18 for bug 838322

Revision history for this message
In , Wan-Teh Chang (wtc-google) wrote :

Comment on attachment 557158
Patch (v1)

> // By request of the Dutch government

I suggest this comment be reworded. This comment
implies we yielded to government pressure. I doubt
that's the case.

How about something like "Staat der Nederlanden Root CA
certified their subordinate DigiNotar CAs were good"?
If it turns out their subordinate DigiNotar CAs were
also attacked, then that'll be reason to remove the
trust for Staat der Nederlanden Root CA.

Similarly, we should ask each of the root CA that
has a subordinate DigiNotar CA to either certify
or revoke the subordinate DigiNotar CA. This is a
good test for the trustworthiness of the root CAs.