-----Original message----- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx> Sent: Mon 19-11-2012 09:08 Subject: Re: Firefox certificates for Fedora sites? Attachment: signature.asc To: users@xxxxxxxxxxxxxxxxxxxxxxx; > these are self signed certs because they do the same: encryption > if you want you certs accepted from browsers you need to sign > them by a CA like Thawte what is expensive Second sentence should read: "If you don't want your (web-)app (and its users) to be vulnerable to MiTM attacks, they need to be issued by CA's that are trusted by the (web-)app users. The easiest way to do so is to use one of the many commercial CA's trusted by default by browsers. These certificates are frequently quite inexpensive." PK -- users mailing list users@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe or change subscription options: https://admin.fedoraproject.org/mailman/listinfo/users Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines Have a question? Ask away: http://ask.fedoraproject.org