On 05/21/2010 07:52 AM, Gervase Markham wrote:
> On 21/05/10 05:36, Matt McCutchen wrote:
>> I'm not claiming that the user knows.  I only said that if there is in
>> fact no impersonation, then the error is a false positive.
>
> This seems a fine definition to me.
>
> If the browser says "OMG - someone might be trying to MITM you", and
> no-one is, that's a false positive.

Except the warning is that the server is incorrectly identified. Which
is always true in this case. It isn't safe to continue until the error
is fixed.

bob



-- 
dev-tech-crypto mailing list
[email protected]
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to