본 사이트는 여러분의 사용자 경험을 개선하기 위해 유지 보수를 진행하는 동안 기능이 제한됩니다. 도움말로 문제가 해결되지 않고 질문을 하고 싶다면 Twitter의 @FirefoxSupport 및 Reddit의 /r/firefox 채널을 활용하세요.

Mozilla 도움말 검색

고객 지원 사기를 피하세요. 저희는 여러분께 절대로 전화를 걸거나 문자를 보내거나 개인 정보를 공유하도록 요청하지 않습니다. "악용 사례 신고"옵션을 사용하여 의심스러운 활동을 신고해 주세요.

자세히 살펴보기

S/MIME and trusting other certificates

  • 2 답장
  • 1 이 문제를 만남
  • 3 보기
  • 최종 답변자: alan158

more options

I am trying to get S/MIME set up properly. I have my personal certificate set up and installed - I can send signed messages. However, when I try to send an ecrypted message to a recipent with a DOD certificate, I run into an error that the certificate is not valid. I have installed the DOD root certificates, trusted them for email/websites, and imported the individual's signature cert into the store.

How do I change the settings / trust on the individual's certificate to trust it? It is within the valid date range.

I am trying to get S/MIME set up properly. I have my personal certificate set up and installed - I can send signed messages. However, when I try to send an ecrypted message to a recipent with a DOD certificate, I run into an error that the certificate is not valid. I have installed the DOD root certificates, trusted them for email/websites, and imported the individual's signature cert into the store. How do I change the settings / trust on the individual's certificate to trust it? It is within the valid date range.

선택된 해결법

I had already installed the DOD root certificates as you had mentioned.

I had to manually go through each DOD certificate and "Edit Trust" to allow them to identify websites and email. That solved the problem.

문맥에 따라 이 답변을 읽어주세요 👍 0

모든 댓글 (2)

more options

Generally the issue is missing intermediate certificates. But Personally I think it is funny the supposedly most secure organizations in the world can't meet a public test on their integrity that would see them included in the trusted authorities immediately.

However basically I suggest following the guide for Firefox here https://public.cyber.mil/pki-pke/end-users/getting-started/linux-firefox/

So Step 1 from the web site In Thunderbird open options/ preferences and search for cert then click the Manage Certificates button. The pages are generally the same in Thunderbird and Firefox as Thunderbird uses the same pki code to manage certificates as Firefox. Skip to step 7. from the web site

more options

선택된 해결법

I had already installed the DOD root certificates as you had mentioned.

I had to manually go through each DOD certificate and "Edit Trust" to allow them to identify websites and email. That solved the problem.

글쓴이 alan158 수정일시