Nelson Bolyard wrote:
Under what circumstances do you want to display in the status bar the names from the cert rather than the name the user typed?
Well, they should almost always be the same. There are two situations where they are not:
- After someone clicks through a name mismatch dialog; the name in the status bar is then the name from the URL bar, not the name from the cert.
- When someone is using a wildcard cert; it's arguable that if the cert is for "*.mozilla.org" and you are on "www3.mozilla.org", you might want the status bar to say "mozilla.org" rather than "www3.mozilla.org". This allows sites with many servers to keep the status bar "stable", thereby avoiding confusing users.
And under those circumstances, which of the potentially many names in the cert will you display?
See above. If the cert has "a.mozilla.org" and "b.mozilla.org", and you are on "a.mozilla.org", clearly that's the name you display.
Gerv _______________________________________________ mozilla-crypto mailing list [email protected] http://mail.mozilla.org/listinfo/mozilla-crypto
