>> By default, the user is not allowed to run files with exe, >> pif, etc. extensions. But he has the right to modify that list in the >> Settings. > Do you recommend a somewhat deeply buried option in the settings to > allow bad certificates?
Yes. Does not have to be deeply buried, should be in the Settings somewhere. If the certificate is bad, and the use of bad certificates are disabled, with a warning window point him where he can change that. Of course, by default, should not allow bad certificates. Also, even if the user enable the use of bad certificates, he should get a warning window about it at each connection to that server. To remind him what he's doing, plus kind of annoy him a little bit so he talks to the server's admin and force them to fix the errors. Maybe some people will not agree with it (warning window at each connection), but this way Ritlabs's reputation is not lost. You did everything you could, hands are clean, user was warned correctly about what he's doing. Vili ________________________________________________________ Current beta is 4.2.33.9 | 'Using TBBETA' information: http://www.silverstones.com/thebat/TBUDLInfo.html

