tonycondon
Gastons CRO (Chief Dinner Reservation Officer)
every time i open a post here today, i get a pop up complaining about a sercurity certificate. whats that about?
every time i open a post here today, i get a pop up complaining about a sercurity certificate. whats that about?
yep, i just noticed that correlation.
its all teds fault, again.
if you give Ted money he will go all the way?If you just donated some $$$ I bet it would all go away
Oh I thought you said "go away" and was all excited for a second! :smile:if you give Ted money he will go all the way?
Tony,
This sounds crazy, but could you verify that the date/time is set correctly on your computer?
Is anybody else seeing this happen? Pete, you seemed to zero in on the cause...have you see the warning?
Ah! If it's a work computer, you may not have the latest root certificates installed. Entrust, Verisign, and other companies replaced there intermediate certificate authorities in the last year, and the old CA's are expired. If you don't have the new CA certs installed, your browser can't form a certificate chain and will throw an error.
Gobbledy-gook? Let's try a plain-english version.
SSL certificates all chain upwards to a certificate authority. Essentially, your browser comes from Microsoft or Apple or Sun or whoever with certain trusted elements in it. So your browser already "knows" it trusts Andre (for example)
Paypal has a certificate signed by David. David is signed by Charlie, who's signed by Bob, who's signed by... Andre! So your browser will trust the certificate because it can work all the way back to Andre. But in this case, Bob or Charlie got new certificates signed by Anna, who ISN'T embedded in your browser. So once you update your browser (this is something that happens with windows update) root certificates to trust Anna, then you'll once again be able to trust David.
Not sure that was any easier to understand...
The root ca hasn't changed, but the intermediate one (the one that signed the Paypal cert) probably has changed.I wondered about that, but paypal's certificate is signed by Verisign. THE original CA. I doubt if anything regarding their inclusion has changed since SSL was invented.