1 ca-certificates (20121103) UNRELEASED; urgency=low
3 Update mozilla/certdata.txt to version 1.85
4 Certificates added (+) (none removed):
5 + "Actalis Authentication Root CA"
6 + "Trustis FPS Root CA"
7 + "StartCom Certification Authority" (renewal/rehash)
8 + "StartCom Certification Authority G2"
9 + "Buypass Class 2 Root CA"
10 + "Buypass Class 3 Root CA"
11 Remove CAcert CA certificates due to non-free license
13 -- Michael Shuler <michael@pbandjelly.org> Sat, 03 Nov 2012 15:48:32 -0500
15 ca-certificates (20120212) unstable; urgency=low
17 Update mozilla/certdata.txt to version 1.81
18 Certificates added (+) and removed (-):
19 + "Security Communication RootCA2"
21 + "Hellenic Academic and Research Institutions RootCA 2011"
22 - "Verisign Class 2 Public Primary Certification Authority"
23 - "Verisign Class 4 Public Primary Certification Authority - G2"
24 - "TC TrustCenter, Germany, Class 2 CA"
25 - "TC TrustCenter, Germany, Class 3 CA"
27 -- Michael Shuler <michael@pbandjelly.org> Sun, 12 Feb 2012 15:12:59 -0600
29 ca-certificates (20111211) unstable; urgency=low
31 Remove French Government IGC/A CA certificates. The RSA certificate is
32 included in the Mozilla bundle and the DSA certificate is not in use.
33 Remove expired signet.pl CAs.
34 Remove expired brasil.gov.br CA.
36 -- Michael Shuler <michael@pbandjelly.org> Sun, 11 Dec 2011 19:05:32 -0600
38 ca-certificates (20111025) unstable; urgency=low
40 Update mozilla/certdata.txt to latest (NSS branch version 1.64.2.13)
41 Certificates added (+) and removed (-):
42 + "AffirmTrust Commercial"
43 + "AffirmTrust Networking"
44 + "AffirmTrust Premium"
45 + "AffirmTrust Premium ECC"
47 + "Certinomis - Autorité Racine"
48 + "Certum Trusted Network CA"
49 + "Go Daddy Root Certificate Authority - G2"
50 + "Root CA Generalitat Valenciana"
51 + "Starfield Root Certificate Authority - G2"
52 + "Starfield Services Root Certificate Authority - G2"
53 + "TWCA Root Certification Authority"
54 - "AOL Time Warner Root Certification Authority 1"
55 - "AOL Time Warner Root Certification Authority 2"
57 - "Entrust.net Global Secure Personal CA"
58 - "Entrust.net Global Secure Server CA"
59 - "Entrust.net Secure Personal CA"
60 - "IPS Chained CAs root"
65 - "IPS Timestamping root"
66 - "Thawte Personal Freemail CA"
67 - "Thawte Time Stamping CA"
68 Update CAcert-Class 3-Subroot-certificate Closes: #630232
70 -- Michael Shuler <michael@pbandjelly.org> Sun, 23 Oct 2011 23:16:57 -0500
72 ca-certificates (20090708) unstable; urgency=low
75 - cacert.org/root.crt and cacert.org/class3.crt:
76 Both certificate files were deprecated with 20080809. Users of these
77 root certificates are encouraged to switch to
78 `cacert.org/cacert.org.crt' which contains both class 1 and class 3
79 roots joined in a single file.
80 - quovadis.bm/QuoVadis_Root_Certification_Authority.crt:
81 This certificate has been added into the Mozilla truststore and
82 is available as `mozilla/QuoVadis_Root_CA.crt'.
84 -- Philipp Kern <pkern@debian.org> Wed, 08 Jul 2009 23:19:56 +0200
86 ca-certificates (20090701) unstable; urgency=low
88 * Readded Equifax Secure Global eBusiness CA.
90 -- Philipp Kern <pkern@debian.org> Wed, 01 Jul 2009 14:47:02 +0200
92 ca-certificates (20090624) unstable; urgency=low
94 * This update eases the installation of local certification authorities
95 by providing a canonical location in `/usr/local/share/ca-certificates'.
96 All certificates found in this directory will automatically be included
97 into the list of trusted certificates. For details please see
98 `/usr/share/doc/ca-certificates/README.Debian'.
99 * New CA certificates:
100 - COMODO ECC Certification Authority
102 - Network Solutions Certificate Authority
103 - WellsSecure Public Root Certificate Authority
104 * Removed CA certificates:
105 - Equifax Secure Global eBusiness CA
106 - UTN USERFirst Object Root CA
108 -- Philipp Kern <pkern@debian.org> Wed, 24 Jun 2009 21:04:45 +0200
110 ca-certificates (20080809) unstable; urgency=low
112 * New cacert.org.pem joining both CACert Class 1 and Class 3 certificates.
113 This file can be used for proper certificate chaining if CACert
114 server certificates are used. The old class3.pem and root.pem
115 certificates are deprecated. This new file could safely serve as
116 a replacement for both.
118 -- Philipp Kern <pkern@debian.org> Sat, 09 Aug 2008 14:58:24 -0300
120 ca-certificates (20080617) unstable; urgency=low
122 * New CA certificates:
123 - gouv.fr: added French Government's IGC/A CA
124 - spi-inc.org: added new SPI CA certificate, created in reponse to
125 the infamous OpenSSL security update (already in 20080514)
126 * Removed CA certificates:
127 - spi-inc.org: removed old, still valid but possibly compromised
128 SPI CA certificates from 2006 and 2007 (already in 20080514)
130 -- Philipp Kern <pkern@debian.org> Fri, 20 Jun 2008 10:05:49 +0200
132 ca-certificates (20080411) unstable; urgency=low
134 * New CA certificates:
135 - spi-inc.org: current SPI CA certificate
136 - telesec.de: added Deutsche Telekom Root CA 2
138 + Camerfirma Chambers of Commerce Root
139 + Camerfirma Global Chambersign Root
140 + Certplus Class 2 Primary CA
141 + COMODO Certification Authority
142 + DigiCert Assured ID Root CA
143 + DigiCert Global Root CA
144 + DigiCert High Assurance EV Root CA
147 + Entrust Root Certification Authority
148 + Firmaprofesional Root CA
149 + GeoTrust Global CA 2
150 + GeoTrust Primary Certification Authority
151 + GeoTrust Universal CA
152 + GeoTrust Universal CA 2
153 + GlobalSign Root CA - R2
154 + Go Daddy Class 2 CA
155 + NetLock Business (Class B) Root
156 + NetLock Express (Class C) Root
157 + NetLock Notary (Class A) Root
158 + NetLock Qualified (Class QA) Root
163 + Starfield Class 2 CA
164 + StartCom Certification Authority
167 + SwissSign Gold CA - G2
168 + SwissSign Platinum CA - G2
169 + SwissSign Silver CA - G2
171 + thawte Primary Root CA
172 + TURKTRUST Certificate Services Provider Root 1
173 + TURKTRUST Certificate Services Provider Root 2
174 + VeriSign Class 3 Public Primary Certification Authority - G5
175 + Wells Fargo Root CA
176 + XRamp Global CA Root
177 * Removed CA certificates:
179 + Verisign Class 1 Public Primary OCSP Responder
180 + Verisign Class 2 Public Primary OCSP Responder
181 + Verisign Class 3 Public Primary OCSP Responder
182 + Verisign Secure Server OCSP Responder
184 -- Philipp Kern <pkern@debian.org> Mon, 07 Apr 2008 18:00:06 +0200
186 ca-certificates (20070303) unstable; urgency=low
188 * New CA certificates:
189 - debconf.org: DebConf
190 - cacert.org: add class3
192 -- Fumitoshi UKAI <ukai@debian.or.jp> Sat, 3 Mar 2007 21:21:50 -0800
194 ca-certificates (20040808) unstable; urgency=low
196 * New CA certificates:
197 - brasil.gov.gr: Autoridade Certificadora Raiz Brasileira
198 - signet.pl: Certification Center Signet (CC Signet)
199 - quovadis.bm: QuoVadis CA certificates
200 * Remove CA certificates:
201 - debian.org: revoked due to crack incident.
203 -- Fumitoshi UKAI <ukai@debian.or.jp> Sun, 8 Aug 2004 22:43:36 +0900