29C3 Talk: Certificate Authority Collapse [en]

Just watching axelarnbak‘s 29C3 talk on Certificate Authority Collapse, which covers structural flaws in SSL. I’ve reported on the mess with SSL before, and you may notice related complications (see CAcert) while browsing this page. After a good summary, the talk mainly focuses on structural problems and regulatory solution approaches. But apparently there are other …

SSL Seriously? [Update] [en]

I just ordered a muilti-domain SSL-certificate for 3 of the websites that are run by my company. It’s a simple domain-validated certificate, so they sent me a validation e-mail to the webmaster address of the domain. Yes, you heard right! I’m saying the domain, cause they only bothered to validate one of the three Domains …