This site will have limited functionality while we undergo maintenance to improve your experience. If an article doesn't solve your issue and you want to ask a question, we have our support community waiting to help you at @FirefoxSupport on Twitter and/r/firefox on Reddit.

Search Support

Avoid support scams. We will never ask you to call or text a phone number or share personal information. Please report suspicious activity using the “Report Abuse” option.

Learn More

How to resolve the inability to remove questionable certificates

  • 2 replies
  • 7 have this problem
  • 3 views
  • Last reply by jlempa

more options

Using Preferences - Advanced - Encryption - View Certificates - Authorities - Delete or Distrust, I have been unable to remove any certificates. After selecting a given certificate (ie. turktrust, wells fargo, and many others that do not make any sense) and selecting delete; they have all reappeared. Following strange incidents as of late, it appears as though my computer has been hacked. Any advice?

Using Preferences - Advanced - Encryption - View Certificates - Authorities - Delete or Distrust, I have been unable to remove any certificates. After selecting a given certificate (ie. turktrust, wells fargo, and many others that do not make any sense) and selecting delete; they have all reappeared. Following strange incidents as of late, it appears as though my computer has been hacked. Any advice?

Chosen solution

Firefox will remove the trust bits if you delete a build-in root certificate, but not remove the certificate.
If the trust bits are cleared then the certificate can no longer be used to build a certificate chain that ends with a root certificate, so this disables the certificate and blocks servers that use them.

Read this answer in context 👍 3

All Replies (2)

more options

Chosen Solution

Firefox will remove the trust bits if you delete a build-in root certificate, but not remove the certificate.
If the trust bits are cleared then the certificate can no longer be used to build a certificate chain that ends with a root certificate, so this disables the certificate and blocks servers that use them.

more options

Thank you for your response and solution.