Start using Firefox 3 and you get new insights.
openssl s_client -connect www-949.ibm.com:443
Tells me the same :-)
FF2 tells you the same thing. Using self signed certs in and of itself is not necessarily a bad thing. Is this a customer facing site?
i thought that Mozilla and Opera and Microsoft agreed on the color scheme for certificate error so users would have the same noticiation.
does it turn red if you continue after the warning ?
There is no need to use Firefox 3 to get this not always helpful message. The major problem is that hardly anybody sees and uses the offered hotspot "exception" ! That is the same situation with IE or Opera.....
And that is why companies like Verisign and Thawte have a rather simple and very successful business modell: They just sell the evidence of conformity with certificates stored in browser software.
@Claus: You're correct. In fact, the dialog is technically incorrect - a certificate is not "invalid" simply because it is self-signed. This message is needlessly alarmist.
its properly considered invalid, because the connection may have been infiltrated by a man-in-the-middle attack.
Only if you would be able to verify the authenticity, it would even provide the higher level of integrity over an official certificate.
I agree with David - that the connection may have been infiltrated does not mean that the certificate is invalid. It's good that FF show's its suspicion, but to say the certificate is invalid is just not correct.
From a client perspective, the trustworthiness of certificates rely solely on some bunch of chaining mumbo-jumbo. As roots of some authorities are stored on your system already, only these are considered valid, and so their descendants.
Unlike self-signed certs. They are considered invalid, because no reference is found, unless added to the trust-store manually. This dialog-phrase sure makes sense to users.
Much more important to me: I Heart the new look!
Volker Weber on Olloclip 4-in-1 photo lens for the iPhone 6 and 6 Plus at 14:29
Harald Gaerttner on Olloclip 4-in-1 photo lens for the iPhone 6 and 6 Plus at 13:22
Martti Garden on Use and Adoption of IBM Connections: State of the Market 4Q2014 at 12:55
Ingo Seifert on Welcome to the 1% at 09:28
Volker Weber on Threema arrives on Windows Phone at 09:22
Michael Klüsener on Ich liebe diese Reaktionen at 07:48
Michael Klüsener on Sonos Controller on BlackBerry at 07:39
Volker Weber on Welcome to the 1% at 07:00
Mariano Kamp on Welcome to the 1% at 06:53
Volker Weber on Olloclip 4-in-1 photo lens for the iPhone 6 and 6 Plus at 06:38
Volker Weber on Welcome to the 1% at 06:29
Michelle O'Rorke on Welcome to the 1% at 03:56
Bernd Schuster on Olloclip 4-in-1 photo lens for the iPhone 6 and 6 Plus at 01:47
Ben Poole on Welcome to the 1% at 23:39
Sven Bühler on Ich liebe diese Reaktionen at 21:14
Thomas Holzapfel on Olloclip 4-in-1 photo lens for the iPhone 6 and 6 Plus at 21:01
Christian Henseler on Statt Photoshop at 20:40
Volker Weber on Statt Photoshop at 18:54
Robert Jeschonnek on Glückwunsch @herr_lampe at 17:59
Christian Hensler on Statt Photoshop at 15:43
Ingo Seifert on Sonos Controller on BlackBerry at 15:38
Andrew Magerman on Withings Blood Pressure Monitor at 14:20
Frank Koehler on Sonos Controller on BlackBerry at 13:47
Hubert Stettner on Sonos Controller on BlackBerry at 12:43
John Keys on Statt Photoshop at 12:43