On 29/06/2021 20:17, qorg11 wrote: > I think it's a feature. So a malicious user (with physical access to > your computer) can't trust a malicious invalid certificate > forever. Same thing happens when importing a new CA. Tor Browser > simply ignores it.
Well, honestly: if a malicious user has access to your computer and your user account, you're lost anyway. Best regards Christian -- |--------- Dr. Christian Siefkes --------- christ...@siefkes.net --------- | Homepage: https://www.siefkes.net | Blog: https://keimform.de | Berlin klimapositiv und gerecht machen: https://www.klimaliste-berlin.de | Systemwandel statt Klimawandel! -> https://www.ende-gelaende.org | Ryt Íngglish foneticlli: https://www.lytspel.org |----------------------------------- OpenPGP Key ID: 0x7155F0B5980FA6ED -- To a nail, everything looks like a hammer. -- tor-talk mailing list - tor-talk@lists.torproject.org To unsubscribe or change other settings go to https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk