* Reed Loden:

> On Wed, 04 Nov 2009 20:19:48 +0100
> Florian Weimer <[email protected]> wrote:
>
>> * Paul van Brouwershaven:
>> 
>> > Yesterday I found a new false issued certificate for
>> > defence.external.int. It looks like the problems with Comodo are
>> > still not solved. Isn't it?
>> 
>> Why do you think the certificate is bogus?
>
> $ whois -h whois.iana.org external.int
>
> Domain external.int not found.
>
> This whois server only provides data for which IANA is authoritative,
> including ".int" domains, ".arpa" domains, top level domains, and
> some reserved names.
>
> SSL certificates shouldn't be issued to domains that don't exist. ;)

Does the CPS really say that?  Where?
_______________________________________________
dev-security mailing list
[email protected]
https://lists.mozilla.org/listinfo/dev-security

Reply via email to