[Cryptography] Chrome & Firefox protecting users against Symantec (Thawte, Verisign, Equifax, Geotrust, RapidSSL, etc) certs.

John Levine johnl at iecc.com
Tue Sep 12 16:13:37 EDT 2017


>Both of the major browsers apparently have plans to stop trusting
>essentially everything issued by Symantec, which is long overdue.

No kidding.

>(Side question:  Why the heck did Symantec think it needed so many
>different names?  When I see other companies playing shell games like
>that my first thought is money laundering.)

That part is understandable -- they rolled up a lot of formerly
independent CAs, and kept all their names so customers could
keep the same authority name in the cert when they renewed.

R's,
John


More information about the cryptography mailing list