[cryptography] [SSL Observatory] Diginotar broken arrow as a tour-de-force of PKI fail

Peter Gutmann pgut001 at cs.auckland.ac.nz
Mon Sep 5 23:38:58 EDT 2011


"James A. Donald" <jamesd at echeque.com> writes:
>On 2011-09-06 9:35 AM, Ian G wrote:
>> (Another sign that the processes aren't doing the job is that CABForum's
>> solution is to add more audits. We're up to 4, now, right? WebTrust, BR,
>> EV, vendor. Would 5 do it? 6?)
>
>Shades of Sarbannes Oxley.

Naah, it's the audit equivalent of CDOs :-).  

Peter.



More information about the cryptography mailing list