Add Commscope Root Certificates
Categories
(CA Program :: CA Certificate Root Program, task, P3)
Tracking
(Not tracked)
People
(Reporter: bwilson, Assigned: bwilson)
References
Details
(Whiteboard: [ca-approved] added in NSS 3.94, Firefox 121)
Attachments
(3 files)
"Our PKI website is www.pki-center.com and our overall company website is www.commscope.com. Our CP/CPS, subscriber and relying party agreements are public and can be found at: http://certificates.pkiworks.com/Public/Documents/.
Only the CAs listed under "CA/Browser Forum ecosystem" in the CPS (section 7.1) are part of our inclusion request to Mozilla for issuing HTTPS server certificates."
| Assignee | ||
Updated•3 years ago
|
| Assignee | ||
Updated•3 years ago
|
Comment 1•3 years ago
|
||
| Assignee | ||
Updated•3 years ago
|
Comment 2•3 years ago
|
||
This is a minor update to previous self-assessment. Legal approved creative commons license to our CP/CPS as stated in https://www.mozilla.org/en-US/about/governance/policies/security-group/certs/policy/#33-cps-and-cpses
Comment 3•3 years ago
|
||
Mozilla Root Inclusion Case Information:
https://ccadb-public.secure.force.com/mozilla/PrintViewForCase?CaseNumber=00000923
| Assignee | ||
Updated•3 years ago
|
Updated•3 years ago
|
| Assignee | ||
Comment 4•3 years ago
|
||
Applicant needs to complete root certificate information for all requested roots in the CCADB using an "Add/Update Root Request" case - https://www.ccadb.org/cas/updates. It also needs to submit a value statement - https://wiki.mozilla.org/CA/Quantifying_Value.
| Assignee | ||
Comment 6•3 years ago
|
||
| Assignee | ||
Comment 7•3 years ago
|
||
Today I reviewed the "Print View" and emailed Nicol So re: items that need to be filled in with an "Add/Update Root Request" case.
| Assignee | ||
Updated•2 years ago
|
| Assignee | ||
Updated•2 years ago
|
| Assignee | ||
Comment 8•2 years ago
|
||
Public discussion began today on the CCADB Public list - https://groups.google.com/a/ccadb.org/g/public/c/HVwBXDw6GnU/m/1LsNC19RAQAJ
| Assignee | ||
Comment 9•2 years ago
|
||
Public discussion closed today on the CCADB list - https://groups.google.com/a/ccadb.org/g/public/c/HVwBXDw6GnU/m/q2WRYe_TBQAJ. I have not yet performed a thorough review of the Commscope CPS, and so I will begin reviewing CPS v. 2.7 now and provide Commscope with my comments here.
| Assignee | ||
Comment 10•2 years ago
|
||
I've reviewed the Commscope CP/CPS and the compliance self-assessment from April 2022. They are acceptable.
| Assignee | ||
Comment 11•2 years ago
|
||
Today, I posted an "intent to approve" this request to the Mozilla dev-security-policy list. https://groups.google.com/a/mozilla.org/g/dev-security-policy/c/mXYm2D04v10/m/WGE5M4XsBgAJ. This begins a 7-day "last call" for objections.
| Assignee | ||
Comment 12•2 years ago
•
|
||
As per Comment #11, and on behalf of Mozilla, I approve this request from Commscope to include the following root certificates:
** CommScope Public Trust ECC Root-01 (Websites)
** CommScope Public Trust ECC Root-02 (Websites)
** CommScope Public Trust RSA Root-01 (Websites)
** CommScope Public Trust RSA Root-02 (Websites)
I will file the NSS bug for the approved changes.
| Assignee | ||
Updated•2 years ago
|
| Assignee | ||
Comment 13•2 years ago
|
||
I have filed Bug #1860670 for the NSS changes.
Comment 14•2 years ago
|
||
Test URIs is not works.
| Assignee | ||
Comment 15•2 years ago
|
||
Links work as of Firefox 121, which is currently in Beta. Test websites appear to work per https://crt.sh/test-websites.
Description
•