>>  By default, the user is not allowed to run files with exe,
>> pif, etc. extensions. But he has the right to modify that list in the
>> Settings.
> Do  you  recommend  a somewhat deeply buried option in the settings to
> allow bad certificates?

Yes. Does not have to be deeply buried, should be in the Settings
somewhere. If the certificate is bad, and the use of bad certificates
are disabled, with a warning window point him where he can change
that. Of course, by default, should not allow bad certificates. Also,
even if the user enable the use of bad certificates, he should get a
warning window about it at each connection to that server. To remind
him what he's doing, plus kind of annoy him a little bit so he talks
to the server's admin and force them to fix the errors. Maybe some
people will not agree with it (warning window at each connection), but
this way Ritlabs's reputation is not lost. You did everything you
could, hands are clean, user was warned correctly about what he's
doing.

Vili

________________________________________________________
 Current beta is 4.2.33.9 | 'Using TBBETA' information:
http://www.silverstones.com/thebat/TBUDLInfo.html

Reply via email to