← DigiCert cases
Bugzilla #515425
Trust Bit Enablement
Request to enable code-object-signing "trust bit" for DigiCert's three Root CAs
RESOLVED
FIXED
DigiCert
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update.
Always refer to the official Bugzilla thread as the authoritative source.
If you spot an inaccuracy, let me know via the contact form.
AI Summary
DigiCert submitted a request to enable the code-object-signing trust bit for three of its root certificates: DigiCert Assured ID Root CA, DigiCert Global Root CA, and DigiCert High Assurance EV Root CA. The request was initially made in 2007 and was renewed in 2009. After a thorough evaluation and public discussion, the request was approved by Mozilla's CA Program. The necessary changes were filed under a separate bug for implementation, and DigiCert was instructed to publish updated Certificate Policy and Certification Practices Statement documents, which were completed on September 9, 2010.
Chronology
- DigiCert's request to enable code-object-signing trust bit was approved.
Thread Activity
- Community commenter — DigiCert renews its request for enabling code-object-signing trust bit.
- Mozilla representative — Assessment summary for DigiCert's request is provided, indicating no technical issues.
- Mozilla representative — Request approved on behalf of the Mozilla project.
- Community commenter — Updated CP and CPS were posted online.
Participants
Community commenter
Mozilla representative
DigiCert
External References
Related Bugzilla IDs Mentioned
Similar Local Cases
Enable EV and Turn on Code Signing trust bit for TWCA Root certificate
Enable email trust bit for Actalis Authentication Root CA
EV-Enable DigiCert Assured ID Root CA and DigiCert Global Root CA
Request for additional D-Trust root Integration with trust bit "email" (Non-TLS).
Google Trust Services Root Strategy Plan
Provide APIs and OAuth for Microsoft to automate their root store updates to CCADB
Add Trustis FPS Root CA certificate
Add SSL.com root certificate(s)