Remove AOL Time Warner root certs
This case is about AOL requesting removal of two AOL Time Warner root certificates from Mozilla’s CA root store. AOL stated the roots were obsolete and not in use, and that removing them would not impact Mozilla users because there were no current end-entity certificates chaining to either root. The bug was initiated with the root removal process described on Mozilla’s wiki. AOL later confirmed by email that these two specific root certificates should be removed. After the initial request, Mozilla turned off all trust bits for the two certificates, and a separate bug (#622719) was referenced as covering the actual NSS changes to remove these roots. The bug was resolved as FIXED, and the requester added documentation on restoring default root certificate settings on the Mozilla wiki.
- AOL requested removal of two obsolete AOL Time Warner root certificates from Mozilla’s CA root store.
- AOL confirmed the two specific root certificates to be removed.
- Mozilla turned off trust bits for the two certificates and noted related profile/NSS handling concerns.
- Documentation was added to the Mozilla wiki about restoring default root certificate settings.
- Mozilla representative — AOL requested removal of two obsolete AOL Time Warner roots and stated there were no current end-entity certs chaining to them, linking to the root removal process wiki page.
- Mozilla representative — The requester said they received an email from an AOL representative confirming the two root certificates to remove.
- Rossde representative — David reported that trust bits were already turned off and explained that the certificates may still exist in a separate profile database until the removal is implemented via related changes.
- Mozilla representative — The requester said they added a wiki section on how to restore default root certificate settings and noted that bug #622719 covers the actual NSS changes.