Entry tags:
BarCamp Vancouver 2006 - Conferences notes - CACert - Robin Johnson
[Edit: Please see the corrections regarding the CACert Audit posted here.]
This is the outline version of my Powerpoint presentation, created using information from the CACert site and wiki.
Title: CACert - Verified SSL without paying Verisign- Facets
- History
- Verification
- CACert point system
- Integration
- Assurance time!
- Thawte
- Web-of-Trust
- Notaries
- Things killed by Verisign
- Why?
- Identity implications
- Legal requirements
- Trying to avoiding Verisign-like screwups
- Checking IDs
- (Known-data|shared secret) exchange
- Keysigning process + point allocation
- Already in most Linux distributions
- IE: Microsoft requirements
- WebTrust audit
- $75K USD upfront, $10K USD yearly
- Not likely to happen soon
- WebTrust audit
- Audit by any suitable company
- CACert audit by ‘We!’ funded by StartCom
- Quick guide to filling out the form
- Circulate!