Camerfirma acquisition by InfoCert (Mozilla root store policy section 8.1)
This bug tracks Mozilla Root Store Policy section 8.1 approval for InfoCert’s acquisition of Camerfirma, after news of the acquisition was published on May 4, 2018 and Camerfirma notified Mozilla on May 17, 2018. The reporter asked InfoCert to confirm whether the entire Camerfirma CA operation was acquired and whether any changes were expected to CP/CPS, audits, management, personnel, policies, systems, or other aspects of the CA operation. Camerfirma, via an authorized representative from InfoCert, confirmed that the entire CA operation was acquired and stated that no changes were expected to CP/CPS, audits, management, personnel, policies, or systems as a result of the transaction. The reporter later began a public discussion of the acquisition per policy section 8.1 and noted that Camerfirma’s annual audit reports were overdue. The acquisition discussion concluded positively, with a link to the final outcome in the mozilla.dev.security.policy thread. The bug is marked RESOLVED with resolution FIXED.
- News of the InfoCert acquisition of Camerfirma was published.
- Camerfirma notified Mozilla about the acquisition.
- Bug 1463597 was opened to track Mozilla approval for the acquisition under policy section 8.1.
- A public discussion of the acquisition was started per policy section 8.1, noting overdue annual audit reports.
- The acquisition discussion ended with a positive conclusion.
- Fastly representative — Opened the bug to track approval of the InfoCert acquisition of Camerfirma under policy section 8.1 and requested detailed answers about operational, policy, audit, and organizational changes.
- AC Camerfirma, S.A. — Provided authorized responses stating the entire CA operation was acquired and that no changes were expected to CP/CPS, audits, management, personnel, policies, systems, or other aspects.
- Fastly representative — Started a public discussion of the acquisition per policy section 8.1 and noted that Camerfirma’s annual audit reports were overdue.
- Fastly representative — Asked for final comments by 30 September and referenced bug 1478933 on qualified audits.
- Fastly representative — Reported that the acquisition discussion ended with a positive conclusion and linked to the mozilla.dev.security.policy thread.