Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

the cert patrol add-on for firefox can be configured to behave that way:

http://patrol.psyced.org/

normally it just shows you a horizontal bar alerting you when a host's ssl certificate changes, and whether it thinks it was for a good reason like the old cert being near its expiration date.

annoyingly, google has a number of different ssl certificates installed on different servers/load balancers (some wildcard, some not, some signed by different CAs, some signed by google's root) so nearly every time i would use a google service, the add-on would be throwing warnings at me that must be manually clicked to be dismissed. eventually i gave up and stopped using the add-on.



In the latest version, you can now tell it to stop warning you about the changes from a particular domain only.


Unfortunately that still wouldn't have helped in this case.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: