Security/Foreign Certificate Warning: Difference between revisions

added a challenge around messaging
(→‎Challenges: rephrase mnot's comment)
(added a challenge around messaging)
Line 56: Line 56:
# Organizations using private CAs would be affected by this even though in this case there is no MITM (see [https://code.google.com/p/chromium/issues/detail?id=81623#c20 rsleevi's comment] on a similar feature).
# Organizations using private CAs would be affected by this even though in this case there is no MITM (see [https://code.google.com/p/chromium/issues/detail?id=81623#c20 rsleevi's comment] on a similar feature).
#* It's not clear whether this would be perceived as bad for internal sites (see [https://code.google.com/p/chromium/issues/detail?id=81623#c28 mnot's comment]).
#* It's not clear whether this would be perceived as bad for internal sites (see [https://code.google.com/p/chromium/issues/detail?id=81623#c28 mnot's comment]).
# Giving users a simple explanation for why this is something they should worry about and giving them some actionable suggestions for resolution/mitigation.


== Related ==
== Related ==
canmove, Confirmed users
225

edits