[7509] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

MS don't need no stinking bugfixes

daemon@ATHENA.MIT.EDU (Enzo Michelangeli)
Thu Jul 20 16:38:30 2000

Message-ID: <00a701bff260$afc26c80$31cf54ca@emnb>
From: "Enzo Michelangeli" <em@who.net>
To: <cryptography@c2.net>, <coderpunks@toad.com>
Date: Thu, 20 Jul 2000 23:23:17 +0800
MIME-Version: 1.0
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: 7bit

We are already at the version 5.5 of MSIE, and the infamous message "This
Certificate Has Failed to Verify for All of Its Intended Purposes",
displayed when one clicks on the padlock icon if the connection is secured
by an SGC server certificate, is still there. This problem has been
acknowledged to exist since the version 5.0:

 http://support.microsoft.com/support/kb/articles/q233/4/79.ASP

...but MS doen't seem to believe that it deserves any attention. I just love
the cavalier attitude displayed in the brilliant "Resolution":

"This issue effects (sic) the user interface only. Internet Explorer still
communicates using the secure connection. If you click the Certificate Path
tab in the same dialog box, This certificate is OK is displayed in the
Certificate Status box."

After all, who cares about the stupid user interface in a certificate
verification screen...

Enzo





home help back first fref pref prev next nref lref last post