Microsoft deems all DigiNotar certificates untrustworthy, releases updates

Damian Menscher damian at google.com
Sun Sep 11 23:23:29 UTC 2011


On Sun, Sep 11, 2011 at 4:02 PM, Jimmy Hess <mysidia at gmail.com> wrote:

> On Sun, Sep 11, 2011 at 1:30 AM, Damian Menscher <damian at google.com>
> wrote:
> > On Fri, Sep 9, 2011 at 11:33 PM, Jimmy Hess <mysidia at gmail.com> wrote:
> > Because of that lost trust, any cross-signed cert would likely be revoked
> by
> > the browsers.  It would also make the browser vendors question whether
> the
>
> I am not engaging in speculation that DigiNotar plans to continue to
> operate, they have already stated so much.
>
> http://www.vasco.com/company/press_room/news_archive/2011/news_diginotar_reports_security_incident.aspx
> "VASCO does not expect that the DigiNotar security incident will have
> a significant impact on the company’s future revenue or business
> plans."
>

I think you are misinterpreting that statement -- I interpret it as meaning
VASCO will continue to exist, and possibly buy another root CA to continue
their business plans.  (They had only recently acquired DigiNotar.)

Damian
-- 
Damian Menscher :: Security Reliability Engineer :: Google



More information about the NANOG mailing list