Laurie: Improving SSL certificate security
Laurie: Improving SSL certificate security
Posted Apr 6, 2011 7:50 UTC (Wed) by Lennie (subscriber, #49641)In reply to: Laurie: Improving SSL certificate security by djao
Parent article: Laurie: Improving SSL certificate security
The user can do 2 things the safe option or just continue because "it might be alright".
I don't know if you have actually seen a non-technical user, but I don't know how this will work.
When they see such a thing the first time, they might ask someone and they check something and tell the user: 'this is ok'.
Then when a man-in-the-middle-attack occurs, they just click ok and keep going.
The whole idea of PKI is that you have have a third party help to determine/identify if this is the server you would want to connect to.
___
Actually, I get my certificates for free: https://www.startssl.com/
So I don't think they have the high turnover rates because they make more money.
You actually pay 1 amount per year for all the domains you want if you want more verification.
