Closed
Bug 523434
Opened 15 years ago
Closed 15 years ago
Add "ApplicationCA - Japanese Government" root certificate to NSS
Categories
(NSS :: CA Certificates Code, task)
NSS
CA Certificates Code
Tracking
(Not tracked)
RESOLVED
FIXED
People
(Reporter: kathleen.a.wilson, Assigned: KaiE)
References
Details
Attachments
(1 file)
1.31 KB,
application/x-x509-ca-cert
|
Details |
This bug requests inclusion in the NSS root certificate store of the following certificate, owned by the Japanese GPKI:
Friendly name: ApplicationCA - Japanese Government
Certificate location: http://www.gpki.go.jp/apcaself/APCAroot.der
SHA1 Fingerprint: 7F:8A:B0:CF:D0:51:87:6A:66:F3:36:0F:47:C8:8D:8C:D3:35:FC:74
Trust flags: web sites, code signing
Test URL: https://www.gpki.go.jp/selfcert/finger_print.html
This CA has been assessed in accordance with the Mozilla project guidelines, and the root certificate has been approved for inclusion in bug #474706.
The next steps are as follows:
1) A representative of the CA must confirm that all the data in this bug is correct, and that the correct certificate(s) have been attached. They must also specify what OS they would like to use to perform the verification below.
2) A Mozilla representative creates a test build of NSS with the new certificate(s), and attaches nssckbi.dll to this bug. A representative of the CA must download this, drop it into a copy of Firefox and/or Thunderbird on the OS in question and confirm (by adding a comment here) that the certificate(s) have been correctly imported and that websites work correctly.
3) The Mozilla representative checks the certificate(s) into the NSS store, and marks the bug RESOLVED FIXED.
4) At some time after that, various Mozilla products will move to using a version of NSS which contains the certificate(s). This process is mostly under the control of the release drivers for those products.
Reporter | ||
Comment 1•15 years ago
|
||
Reporter | ||
Comment 2•15 years ago
|
||
Yoshikazu Ooe, Please see step #1 above.
I confirm that all the data are correct, and the correct certificate has been attached.
In order to perform the verification, we would like to use Windows XP.
Best Regards,
Yoshikazu Ooe
Assignee | ||
Comment 4•15 years ago
|
||
Please perform the test (3) mentioned in the initial comment in this bug.
Instead of using a separate nssckbi.dll, I've produced a full test firefox build, please download from:
https://build.mozilla.org/tryserver-builds/kaie@kuix.de-bug527759/
We'll wait for you to confirm your root(s) have been added correctly to this test build (cert listed in cert manager, trust flags as expected, you can connect to your test site as expected).
I have downloaded and tested the test build you attached.
We confirm that it works correctly and contains our root with the right flags.
Best Regards,
Yoshikazu Ooe
Assignee | ||
Comment 6•15 years ago
|
||
Resolved fixed by Bug 527759
Status: NEW → RESOLVED
Closed: 15 years ago
Resolution: --- → FIXED
You need to log in
before you can comment on or make changes to this bug.
Description
•