On 2011-06-03 11:32:15 +0530, Kartik Mistry wrote: > On Mon, Jan 3, 2011 at 5:39 AM, Vincent Lefevre <[email protected]> wrote: > > Gwibber bypasses certificate checking when the login/password is > > provided, at least to identi.ca. > > This looks fixed in identi.ca server side. Can you confirm this?
This is a purely client-side bug. The bug is not normally visible now that the server side has been fixed. But the security problem probably still exists. Anyway, how the CA certificate is supposed to be accessed? (I don't have the time right now, but I suppose I could see this with a strace.) -- Vincent Lefèvre <[email protected]> - Web: <http://www.vinc17.net/> 100% accessible validated (X)HTML - Blog: <http://www.vinc17.net/blog/> Work: CR INRIA - computer arithmetic / Arénaire project (LIP, ENS-Lyon) -- To UNSUBSCRIBE, email to [email protected] with a subject of "unsubscribe". Trouble? Contact [email protected]

