Not aware of any technical reason, but I assume that these are CAs managed by different teams and integrating the Windows build process into the third-party signing chain would probably be a lot of work. Also, Windows would then stop booting on these machines that have already been deployed.
Power management, mobile and firmware developer on Linux. Security developer at Aurora. Ex-biologist. mjg59 on Twitter. Content here should not be interpreted as the opinion of my employer. Also on Mastodon.
no subject
Date: 2022-07-12 06:16 am (UTC)