cti-taxii — archive
[Date Prev]
| [Thread Prev]
| [Thread Next]
| [Date Next]
— [Date Index]
| [Thread Index]
| [Month Index]
| [List Home]
Items in scope vs out of scope
For an example where "special" certs might lead to a barrier to entry, US-CERT's CISCP program insists on using FedBridge certificates at the moment. I know both ourselves and another large financial services firm have had trouble obtaining this type of certificate due to general confusion from our internal approval processes and even with external CAs who can't scale requests for certificates that require additional verification. This is not to say that we'd necessarily have the same trouble with extended validation certificates -- but we're certainly making it harder for the average bear to use SSL if we prefer or require them. Thanks, Alex
[Date Prev]
| [Thread Prev]
| [Thread Next]
| [Date Next]
— [Date Index]
| [Thread Index]
| [Month Index]
| [List Home]