- Package:
- ca-certificates
- Source:
- ca-certificates
- Submitter:
- Daniel Haryo Sugondo
- Date:
- 2026-08-16 21:25:02 UTC
- Severity:
- normal
Dear Maintainer, Because Let's Encrypt has been signed the new certificate with the gen-y root certificate, would you please include the new Root CA from Let's Encrypt? At the moment, we got problem with Thunderbird, etc. because the certificate isn't trusted. https://letsencrypt.org/certs/gen-y/root-ye.pem https://letsencrypt.org/certs/gen-y/root-yr.pem Thank you and regards, Daniel Sugondo.
Hi, New CAs are included as they are trusted by the Mozilla root program. As far as I know that has not happened yet for those roots. And it's also unnecessary, since they're cross-signed by the existing X1 and X2 roots, so whatever problem you have has a different cause. Cheers, Julien