https://bugzilla.wikimedia.org/show_bug.cgi?id=47832

--- Comment #20 from Tyler Romeo <tylerro...@gmail.com> ---
(In reply to comment #19)
> (In reply to comment #18)
> > It's possible to detect certificate spoofing if we're pinning
> > our certificates (which we should be doing).
> 
> I agree we *should*.  Are we?

Why would or should we be using certificate pinning? Are we really going to
require all users to explicitly install the Wikimedia certificate on their
browsers?

-- 
You are receiving this mail because:
You are the assignee for the bug.
You are on the CC list for the bug.
_______________________________________________
Wikibugs-l mailing list
Wikibugs-l@lists.wikimedia.org
https://lists.wikimedia.org/mailman/listinfo/wikibugs-l

Reply via email to