Sorta OT - Cheap certificate authority?

Tom Horsley tom.horsley at att.net
Sat Aug 2 20:19:24 UTC 2008


On Sat, 02 Aug 2008 14:27:19 -0500
Thomas Cameron <thomas.cameron at camerontech.com> wrote:

> Because perception==reality.  It will be publicly facing, and that whole
> "Firefox will not allow you to access this site without accepting that
> this is an untrusted CA" thing is off-putting for most members of the
> general public.

In that case be careful if you have any opensuse users of the site.
Depending on what software they are using there are at least three
(maybe more) SSL libs shipped in opensuse and each one of them
has a separate and disjoint set of root certificates (what fun), so
you might be able to access it with firefox, but not curl,
or openssl, etc.




More information about the users mailing list