4 ms·
Haha, this doesn't make any sense. How can you possibly know the real cert from the one generated by NSA?
by HelloBeautiful 16y ago
Haha, this doesn't make any sense. How can you possibly know the real cert from the one generated by NSA?
- fugue88 16y agoGreat question! Unfortunately, I don't think you can. If you use CA certs to trust site certs, the site certs can change on the fly (i.e. be replaced with an NSA interloper) without you knowing. If you kill your CA certs, and mark individual sites trusted, than at least your browser will notify you if the site's cert has changed since you lasted trusted it. Theoretically. I haven't actually tested this yet. :(
- kronusaturn 16y agoCall them on the phone and ask them to read you their cert fingerprint. Or use this: http://www.networknotary.org/firefox.html http://www.networknotary.org/firefox.html
- HelloBeautiful 16y agoPhone lines are secure of course ...