Re: PR_Close and PR_Shutdown hang if an SSL socket is blocking on Read

2007-07-13 Thread Yahel Zamir
On Jul 12, 8:59 pm, Wan-Teh Chang <[EMAIL PROTECTED]> wrote: > Yahel Zamir wrote: > > > OK... Since my application does not use PRThread's I guess should > > obtain the PRThread id of the Read thread and the Write thread (using > > PR_GetCurrentThread), and then we can interrupt each thread by call

Re: Enhancing security of extension by signing them

2007-07-13 Thread Eddy Nigg (StartCom Ltd.)
Hi Jean-Marc, Jean-Marc Desperrier wrote: > > Any CA that accepts to deliver code signing certificate to individuals > and not companies will have an extremly hard time doing a high quality > identity verification. > Really? Why is that? Personally I tend to trust individuals more then "comp

Re: Is there a way to serialize an nsNSSCertificate to disk?

2007-07-13 Thread Boris Zbarsky
Robert Relyea wrote: > This is correct, NSS will regenerate the CERTCertificate from a > DERCertificate. Note: if the underlying system has changed (the user has > editted the trust flags), then deserializing will not produce exactly > the same CERTCertificate. On the other hand, I don't think y

Re: Is there a way to serialize an nsNSSCertificate to disk?

2007-07-13 Thread Robert Relyea
Kai Engert wrote: Boris Zbarsky schrieb: Kai Engert wrote: nsIX509Cert expects the underlying CERTCertificate to be complete and valid, and serializing/restoring it based on the DER representation will ensure it. The message I got from Nelson's reply is that the DER representati

Re: Enhancing security of extension by signing them

2007-07-13 Thread Jean-Marc Desperrier
Nelson B wrote: > Jean-Marc Desperrier wrote: >> Malicious Code Signing chapter : >> "signatures can still be obtained with relative ease and anonymity. >> Code-signing keys can be obtained anonymously via the use of prepaid >> credit-cards and false details. Pre-paid credit cards can be bought a