4 ms·
FYI, latest stable Firefox says this: You have asked Firefox to connect securely to cacert.org, but we can't confirm that your connection is secure.
by daemon13 14y ago
FYI, latest stable Firefox says this:
You have asked Firefox to connect
securely to cacert.org, but we can't confirm that your connection is secure.
Normally, when you try to connect securely,
sites will present trusted identification to prove that you are
going to the right place. However, this site's identity can't be verified.
- jessaustin 14y agoFYI, latest stable Firefox says... I'm sure e12e knows this. If you don't want to see that message, you need to install the CAcert root certificate in your browser or OS. While you're doing that, take a look at all the root certificates that are already in there: you might decide CAcert is more trustworthy than most of those organizations!
- e12e 14y agoIndeed. For some painful background, see eg: https://bugzilla.mozilla.org/show_bug.cgi?id=215243 A fundamental problem with x509 and Certificate Authorities as it currently stands wrt https and browsers, is that all users almost randomly trust a few organizations to issue certificates -- and get warned of any other certificates -- but there is no decision on part of the user who they trust -- just some vague delegation to browser vendors on vetting CAs. For some more background, I suggest reading: http://www.thoughtcrime.org/blog/ssl-and-the-future-of-authenticity/ edit: Also, I tend to forget that cacert isn't included, as Debian are among the distributions that include them as a CA: http://wiki.cacert.org/InclusionStatus