Om de ûnderfining foar jo te ferbetterjen is tydlik de funksjonaliteit dan dizze website troch ûnderhâldswurk beheind. Wannear in artikel jo probleem net oplost en jo in fraach stelle wolle, kin ús stipemienskip jo helpe yn @FirefoxSupport op Twitter en /r/firefox op Reddit.

Sykje yn Support

Mij stipescams. Wy sille jo nea freegje in telefoannûmer te beljen, der in sms nei ta te stjoeren of persoanlike gegevens te dielen. Meld fertochte aktiviteit mei de opsje ‘Misbrûk melde’.

Mear ynfo

Dizze konversaasje is argivearre. Stel in nije fraach as jo help nedich hawwe.

How can I tell which servers are safe in certificate manager please?)

  • 3 antwurd
  • 5 hawwe dit probleem
  • 1 werjefte
  • Lêste antwurd fan cor-el

more options

Hello, While looking through my computer, in the Certificate Manager I noticed there were a few Certificate names that I know nothing about. There were 5 but I deleted the DigiNotar Cyber CA after reading that Mozilla/FireFox no longer trust them. The others are Entrust.net - Equifax Secure Inc. - GTE Corporation and The USERTRUST Network.

Do these all need to be on my computer?

Any help appreciated.

Cheers, Jack Cat

Hello, While looking through my computer, in the Certificate Manager I noticed there were a few Certificate names that I know nothing about. There were 5 but I deleted the DigiNotar Cyber CA after reading that Mozilla/FireFox no longer trust them. The others are Entrust.net - Equifax Secure Inc. - GTE Corporation and The USERTRUST Network. Do these all need to be on my computer? Any help appreciated. Cheers, Jack Cat

Keazen oplossing

In Tools > Options > Advanced : Encryption: Certificates you have to differentiate between Authorities and Servers. My approach: as long as Authorities include only certificates of the "Builtin Object Token" and "Software Security device" type, I implicitly trust Mozilla and the ex-factory Firefox only.

Servers are then secondary - for instance DigiNotar experienced a serious breach some time ago and as a result - in the chem spill release of Firefox a day later - was dropped from the Authorities list. However, the DigiNotar server can still be included, as a repository for certificates by other "authorities"-trusted CAs.

If this does not allay your fears, you can always reset the Firefox to its ex-factory state as follows:

Refresh Firefox - reset add-ons and settings

Dit antwurd yn kontekst lêze 👍 1

Alle antwurden (3)

more options

Keazen oplossing

In Tools > Options > Advanced : Encryption: Certificates you have to differentiate between Authorities and Servers. My approach: as long as Authorities include only certificates of the "Builtin Object Token" and "Software Security device" type, I implicitly trust Mozilla and the ex-factory Firefox only.

Servers are then secondary - for instance DigiNotar experienced a serious breach some time ago and as a result - in the chem spill release of Firefox a day later - was dropped from the Authorities list. However, the DigiNotar server can still be included, as a repository for certificates by other "authorities"-trusted CAs.

If this does not allay your fears, you can always reset the Firefox to its ex-factory state as follows:

Refresh Firefox - reset add-ons and settings

more options

smo, thank you for your help, problem solved. Cheers, Jack Cat

more options

Note that you may have actually removed the DigiNotar block exceptions button then you would have noticed that those certificates are untrusted permanently ("Do not trust the authenticity of this certificate").