SecurityEngineering/Public Key Pinning/SiteOperators: Difference between revisions

Line 7: Line 7:


== How can you test your pins? ==
== How can you test your pins? ==
# Ensure that the pinning pref is on.
# Go to about:config and make sure that security.cert_pinning.enforcement_level = 1 (allow user-specified trust anchors to override pinning checks) or 2 (strict mode)
# Visit https://pinningtest.appspot.com to make sure you see a warning.
# Visit https://pinningtest.appspot.com to make sure you see a warning.
# Visit all your sites!
# Visit all your sites!
Confirmed users
238

edits