Russia already has its own root CA, the issue is that state-owned root CAs are by definition not safe from MITM attacks by the same government.