, SecurityFocus 2001-03-22
Scam artist duped VeriSign into issuing digital certificates under software-maker's name.
Expand all |
Post comment
|
Microsoft vexed by falsified certs
, SecurityFocus 2001-03-22 Scam artist duped VeriSign into issuing digital certificates under software-maker's name.
Expand all |
Post comment
|
|
|
Privacy Statement |
So, while a CDP would allow the diligent certificate user to verify the authenticity of a given certificate, Verisign's servers wouldn't last very long if they were constantly hammered by CRL requests. It's interesting that an industry leader has such shoddy practices in this area. Still, the standards around X.509 revocation and the products and practices that are available are not ready for mass adoption by the Internet at large.
[ reply ]
Link to this comment: http://www.securityfocus.com/comments/articles/178/5141#5141