[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [WEB SECURITY] Misconfigured site, phishing , or bug in Newest firefox???



On 5/19/06, Brian Eaton <eaton.lists@xxxxxxxxx> wrote:
There are two rather weird things going on here.  The first is that
Verisign appears to have issued a certificate to West Palm Beach that
was signed with an expired intermediate CA certificate.  The second is
that IE doesn't complain about the expired intermediate CA.

I have a lot of trouble believing that Verisign goes around handing
out certificates that were signed with expired CA certificates.  We
must be missing something.

Ah ha. I think this is what we are missing:

http://knowledge.verisign.com/search/solution.jsp?id=vs5781

Regards,
Brian

- Sponsored Advertisement --------------------------------------------------
The Software Security Summit is the only event that addresses security
issues at the application development level. Join us Jun 5-7, Baltimore, MD.
http://www.s-3con.com
----------------------------------------------------------------------------
The Web Security Mailing List
http://www.webappsec.org/lists/websecurity/

The Web Security Mailing List Archives
http://www.webappsec.org/lists/websecurity/archive/



Brought to you by http://www.webappsec.org
Search this site