[wp-trac] [WordPress Trac] #50828: Update ca-bundle.crt and remove expired certificates
WordPress Trac
noreply at wordpress.org
Sun Aug 2 05:30:51 UTC 2020
#50828: Update ca-bundle.crt and remove expired certificates
------------------------------+---------------------
Reporter: barry | Owner: (none)
Type: defect (bug) | Status: new
Priority: normal | Milestone: 5.6
Component: Security | Version:
Severity: normal | Resolution:
Keywords: commit has-patch | Focuses:
------------------------------+---------------------
Comment (by ayeshrajans):
Thanks for bumping this to 5.6 and committing to 5.5 too, albeit it being
RC2.
May I suggest that we remove these certificates from our store? They were
removed from Mozilla/curl store a while ago, and are 2048 bits.
- America Online Root Certification Authority 1
- America Online Root Certification Authority 2
These two roots were requested to be removed
(https://bugzilla.mozilla.org/show_bug.cgi?id=1083294) over 6 years ago,
which is over the CA/B baseline requirements of maximum three year length.
All certificates signed by this root must be technically expired by now.
--
Ticket URL: <https://core.trac.wordpress.org/ticket/50828#comment:13>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform
More information about the wp-trac
mailing list