RE: Firefox behavior with CDPs and AIAs

2013-04-11 Thread Rick Andrews
Sid Stamm suggested dev.security... > -Original Message- > From: Ian Melven [mailto:imel...@mozilla.com] > Sent: Thursday, April 11, 2013 1:22 PM > To: r andrews > Cc: dev-security@lists.mozilla.org > Subject: Re: Firefox behavior with CDPs and AIAs > > > you might also try asking this o

RE: OCSP Tracking

2011-09-07 Thread Rick Andrews
request has a DNT:1" ? With all due respect, I think this is a terrible idea. The CA has a legitimate interest in tracking hits, to monitor load and detect possible attacks. I think what you're trying to do is to prevent privacy loss, but there are better ways to do that without tying