11 | | * We believe that the cert update process will roll keys, so all (active-ish) users should have updated keys by ~September even without any additional work. |
12 | | * AFS servers are hard to roll, but mostly don't count because of krb5_allow_weak_crypto.html (see comment:3). |
13 | | * Except for AFS (above), Server Operations' keys have all be updated (see comment:4). |
14 | | * The PO servers (IMAP) have new keys |
15 | | * SIPB services are generally rolled (contacting the maintainers is probably reasonable for anything that isn't, but we think that's done) |
| 11 | * '''WAIT''': We believe that the cert update process will roll keys, so all (active-ish) users should have updated keys by ~September even without any additional work. |
| 12 | * '''OK''': AFS servers are hard to roll, but mostly don't count because of krb5_allow_weak_crypto.html (see comment:3). |
| 13 | * '''FIXED''': Except for AFS (above), Server Operations' keys have all be updated (see comment:4). |
| 14 | * '''FIXED''': The PO servers (IMAP) have new keys |
| 15 | * '''FIXED''': SIPB services are generally rolled (contacting the maintainers is probably reasonable for anything that isn't, but we think that's done) |