Sorta OT - Cheap certificate authority?

Thomas Cameron thomas.cameron at camerontech.com
Sat Aug 2 21:30:40 UTC 2008


On Sat, 2008-08-02 at 16:19 -0400, Tom Horsley wrote:
> On Sat, 02 Aug 2008 14:27:19 -0500
> Thomas Cameron <thomas.cameron at camerontech.com> wrote:
> 
> > Because perception==reality.  It will be publicly facing, and that whole
> > "Firefox will not allow you to access this site without accepting that
> > this is an untrusted CA" thing is off-putting for most members of the
> > general public.
> 
> In that case be careful if you have any opensuse users of the site.
> Depending on what software they are using there are at least three
> (maybe more) SSL libs shipped in opensuse and each one of them
> has a separate and disjoint set of root certificates (what fun), so
> you might be able to access it with firefox, but not curl,
> or openssl, etc.

The user base will be Windows users, but thanks.  That's good to know.

Thomas




More information about the fedora-list mailing list