[liberationtech] verifying SSL certs (was Re: In defense of client-side encryption (Guido Witmond)

Nathan of Guardian nathan at guardianproject.info
Wed Aug 14 06:15:04 PDT 2013


On 08/14/2013 08:54 AM, Guido Witmond wrote:
> It worked quite well for most sites. But big ones, like Google use a
> different certificate for each endpoint. And Perspectives registers the
> server-certificates it detects when it connects to the servers, not the
> CA that signed it.

Can you use Perspectives in concert with certificate pinning, as part of
Chrome? Seems like that handles both the big and the small.

+n



More information about the liberationtech mailing list