Applying for inclusion of Certeurope Root CA 3 and Certeurope Advanced CA V4 in NSS
The case is a request by CertEurope (CertEurope France) to have its CA certificates included in Mozilla’s NSS trust store for use in Firefox. The requester, Alain Dominguez, said that CertEurope’s root and intermediate CAs were not trusted by default in Firefox and asked to add the root CA certificate and the intermediate CA certificate to the default trust CA. The thread includes links to the proposed root and intermediate certificates, their CRLs, and certificate policy documents, and states that the CAs are audited annually by LSTI. Mozilla asked the CA to provide information from the Mozilla CA information checklist. Mozilla clarified that only root certificates are added to the NSS database and that customers must install any necessary intermediate certificates themselves. After more than 1.5 years without an update from the CA, Mozilla closed the bug as “Won’t fix,” with a note that it would be re-opened if further information is provided.
- CertEurope requested inclusion of its Certeurope Root CA 3 and Certeurope Advanced CA V4 in Mozilla’s NSS trust store.
- Mozilla requested the CA provide the information listed in the Mozilla CA information checklist.
- Mozilla clarified that only root certificates are added to NSS and that intermediates must be installed by CA customers.
- Mozilla closed the request as Won’t fix due to no update for more than 1.5 years.
- Certeurope representative — Alain Dominguez requested adding CertEurope’s root and intermediate CA certificates to Firefox’s default trust CA and provided links to the root/intermediate certificates, CRLs, and policy documents, noting annual audits by LSTI.
- Mozilla representative — Kathleen Wilson asked the CA to provide the information listed in https://wiki.mozilla.org/CA:Information_checklist.
- Rossde representative — David Rossde updated the summary to reflect the root names and stated that only root certificates are added to NSS, while customers must install intermediate certificates.
- Mozilla representative — Fr Lee noted there was no update from the CA for more than 1.5 years and closed the bug for now as Won’t fix, with intent to re-open if further information is provided.