Changes

Jump to: navigation, search

CA/Compliance Self-Assessment

182 bytes added, 00:52, 24 March 2017
clarification
Mozilla's [[CA|root inclusion/update process]] has a [[CA:How_to_apply#Public_discussion|Public Discussion]] phase in which members of the community thoroughly review and discuss each CA's request.
In the past Mozilla relied on community members to do a [[CA:Recommended_Practices#CP.2FCPS_Documents_will_be_Reviewed.21|side-by-side comparison]] of the CA's CP/CPS documents to the [https://cabforum.org/baseline-requirements-documents/ CA/Browser Forum's Baseline Requirements]. This is a very time-consuming task, made even more difficult due to by translation issueissues, difficulty finding which versions of which documents to review, etc. This caused the [[CA:Schedule#Queue_for_Public_Discussion|Public Discussion ]] of root inclusion/update requests to grind to a halt.
Therefore, Mozilla is going to require CAs to perform their own side-by-side comparison of their CP/CPS documents to the BRs, and attach their findings to their Bugzilla Bug before their discussion will be started. A template for this self-assessment is provided at the link above. Members During the public discussion in the [https://groups.google.com/forum/#!forum/mozilla.dev.security.policy mozilla.dev.security.policy] forum, members of the community will use the CA's self-assessment document to perform their own review, confirm the CA's self-assessment, ask questions, raise concerns, etc.
Confirm, administrator
5,526
edits

Navigation menu