Re: Two Firefox security bugs related to HTTPS

2014-09-09 Thread bsamuels453
On Saturday, August 16, 2014 8:45:15 AM UTC-7, ffbug...@hushmail.com wrote: Hello world! We need votes for security bugs! Adding Security Exception for self-signed HTTPS sites cannot be done permanently https://bugzilla.mozilla.org/show_bug.cgi?id=1050100 Firefox 31

Re: Two Firefox security bugs related to HTTPS

2014-09-09 Thread Jonas Witmer
This might be not the topic of this discussion, but I think it's related (it's a recommend cipher, too). What's the reason why we do not support AES_128_GCM ciphers? They are more secure than AES_128_CBC, but the performance is likely the same. Also See

Re: GlobalSign Request to Include ECC Roots

2014-09-09 Thread Kathleen Wilson
On 8/21/14, 3:25 PM, Kathleen Wilson wrote: On 7/29/14, 3:26 PM, Kathleen Wilson wrote: GlobalSign has applied to include the “GlobalSign ECC Root CA - R4” and “GlobalSign ECC Root CA - R5” root certificates, and turn on all three trust bits and enable EV treatment for both roots. Thanks to