--IiVenqGWf+H9Y6IX
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable
On Sun, Oct 21, 2007 at 08:28:19PM -0700, David E. Thiel wrote:
>Sounds fine to me - I'll take a closer look at this. I'd still like
>to see the root CA certs merged into base so libfetch can be fixed.
So would I.
>Does anyone object to just using the ones currently provided by the
>ca_root_nss port?
I would like to have CAcert (www.cacert.org) included. It is not
currently in the Mozilla root set but is included in various Linux
and other BSD distributions. See
http://wiki.cacert.org/wiki/InclusionStatus
(which lists FreeBSD on the basis of the now-removed caroot port).
I agree that the final decision should be up to the Security team.
--=20
Peter
--IiVenqGWf+H9Y6IX
Content-Type: application/pgp-signature
Content-Disposition: inline
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.4 (FreeBSD)
iD8DBQFHHkwc/opHv/APuIcRAlyvAJ0XkleFL9SKetKnP6AulJO7Fj259gCcCe32
KX1w+yMWWZVly8msSSKiyqM=
=EJT4
-----END PGP SIGNATURE-----
--IiVenqGWf+H9Y6IX--