you are viewing a single comment's thread
view the rest of the comments
[+] 15 points 2 years ago* (last edited 2 years ago) (1 child)
  • [–] 5 points 2 years ago (2 children)

    But it’s not spyware. The eIDAS law proposes that governments can insert certificates that spoof the originator. A subtle difference.

    I really hope Mozilla don’t comply

  • source
  • parent
  • hideshow 4 child comments
  • Still weakening encryption standards.

    It would force the inclusion of a "trusted root" into browsers & OSs with the purpose of allowing government entities to spoof certificates. As certificate pinning is becoming mainstream, I would assume it'll require browser & app vendors to weaken those controls too.

    You'd hope ECHR's prior ruling would block this too. For the exact same rationale.

  • source
  • parent