Anonymous remailer wrote:
>
> Michael Pogrebisky <[EMAIL PROTECTED]> wrote:
> > We've found a way to add any arbitrary CA certificate into certificate
> > database of Netscape Communicator (on Win32 only) in a way completely
> > transparent to users. I mean, no UI warnings or questions at all.
> > If anyone is interested, I can e-mail the code.
> >
> > P.S. Please, note, this is potentially very dangerous tool!
> >
> > Michael.
>
> If you'll mail it to anyone who's interested, why not just post
> the code to the list so we can all see it? Geez.
>
> ______________________________________________________________________
> OpenSSL Project http://www.openssl.org
> User Support Mailing List [EMAIL PROTECTED]
> Automated List Manager [EMAIL PROTECTED]
That could be a VERY BIG problem for the Win people because they can not
choose to trust or not the connection: I mean they are not presented with
wornings and so on...
You should report as a bug to the Netscape people.
C'you,
Massimiliano Pala ([EMAIL PROTECTED])
______________________________________________________________________
OpenSSL Project http://www.openssl.org
User Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]