On Tue, Aug 19, 2008 at 5:40 PM, Nelson Bolyard
<[EMAIL PROTECTED]> wrote:
> In a Network World column,
>   http://www.networkworld.com/community/node/31124
> the author writes:
>
>> At Black Hat '08 there was a great demonstration of how valid "internal
>> testing only" FQDN certificates for URLs that you don't control can be
>> obtained by anyone asking.

This means that CA doesn't even do "domain validation", right?

Wan-Teh
_______________________________________________
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to