Follow Slashdot stories on Twitter

 



Forgot your password?
typodupeerror

Submission Summary: 0 pending, 2 declined, 1 accepted (3 total, 33.33% accepted)

Encryption

Submission + - When Is a Self-Signed SSL Certificate Acceptable? 5

UltraLoser writes: When is it acceptable to encourage users to accept a self-signed SSL cert? Recently the staff of a certain website turned on optional SSL with a self-signed and domain mismatched certificate for its users and encourages them to add an exception for this certificate. Their defense of this certificate is that it is just as secure as one signed by a commercial CA and because their site exists for the distribution of copyrighted material the staff do not want to have their personal information in the hands of a CA. In their situation is it acceptable to encourage users to trust this certificate or is this giving users a false sense of security?

Slashdot Top Deals

!07/11 PDP a ni deppart m'I !pleH

Working...