[tor-bugs] #8958 [EFF-HTTPS Everywhere]: Let <rule> elements specify an altenative hostname that should be accepted in a cert

Tor Bug Tracker & Wiki blackhole at torproject.org
Fri May 24 17:20:02 UTC 2013


#8958: Let <rule> elements specify an altenative hostname that should be accepted
in a cert
----------------------------------+-----------------------------------------
 Reporter:  pde                   |          Owner:  pde
     Type:  enhancement           |         Status:  new
 Priority:  normal                |      Milestone:     
Component:  EFF-HTTPS Everywhere  |        Version:     
 Keywords:                        |         Parent:     
   Points:                        |   Actualpoints:     
----------------------------------+-----------------------------------------
 For instance, you might want to accept an akamai cert for some given
 domain that is known to be served by akamai.

 This might require [https://bugzilla.mozilla.org/show_bug.cgi?id=644640 an
 API that doesn't exist yet] or it might be possible via
 [https://mxr.mozilla.org/mozilla-
 central/source/security/manager/ssl/public/nsICertOverrideService.idl the
 browser's whitelisting mechanism] in combination with
 [https://mxr.mozilla.org/mozilla-
 central/source/security/manager/ssl/public/nsIBadCertListener2.idl
 nsIBadCertListener2] or
 [https://bugzilla.mozilla.org/page.cgi?id=splinter.html&bug=700693&attachment=747679
 something equivalent]

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/8958>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list