On Tue, Aug 19, 2008 at 5:40 PM, Nelson Bolyard <[EMAIL PROTECTED]> wrote: > In a Network World column, > http://www.networkworld.com/community/node/31124 > the author writes: > >> At Black Hat '08 there was a great demonstration of how valid "internal >> testing only" FQDN certificates for URLs that you don't control can be >> obtained by anyone asking.
This means that CA doesn't even do "domain validation", right? Wan-Teh _______________________________________________ dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto