为提升您的使用体验,本站正在维护,部分功能暂时无法使用。如果本站文章无法解决您的问题,您想要向社区提问的话,请到 Twitter 上的 @FirefoxSupport 或 Reddit 上的 /r/firefox 提问,我们的支持社区将会很快回复您的疑问。

搜索 | 用户支持

防范以用户支持为名的诈骗。我们绝对不会要求您拨打电话或发送短信,及提供任何个人信息。请使用“举报滥用”选项报告涉及违规的行为。

详细了解

What are the precedural requirements for a certification authority to trust its certificate by firefoxfox?

  • 7 个回答
  • 3 人有此问题
  • 11 次查看
  • 最后回复者为 cor-el

more options

Dear Sir,

I am a staff from a Certification Authority that is situated in Asia Region. As our CA is new, we would like to know the steps and procedures to import our Root CA certificates into the Firefox browser.

With Regards,

Dear Sir, I am a staff from a Certification Authority that is situated in Asia Region. As our CA is new, we would like to know the steps and procedures to import our Root CA certificates into the Firefox browser. With Regards,

所有回复 (7)

more options

I think this is a legal issue that I'm not able to cover well.

As I see, these are the certificates trusted by Firefox: http://www.mozilla.org/projects/security/certs/included/

The best thing you may do is contact the Firefox staff and ask them for help.

Remember you need to certificate that your CA meets all the standards and specifications and certifies only trusted non-malware websites.

more options

Thanks in advance. If you know the contact e-mail address of firefox support team or legal administration, please share us cause we are still finding how to contact firefox.

With Regards,

more options

I think you will need to get to one of the Mozilla Foundation offices and ask personally for help. Here you can find where are those offices. Firefox - Contact us

more options

Yes, I see. Thanks for the information. Regards.

more options
more options

The above information is very useful for me. In fact, the problem is the SSL certificate which is sold from our CA is untrust because of our RootCa which is not included in firefox trust store. What i want to know is "Is that possible that our CA is cross with Other RootCA that is included in Firefox trust store. "

if it is possible, could you please share me knowledge?

With Regards

more options

See also:

If your root certificate chains to a recognized build-in root certificate then you need to send it as part of the certificate chain.
If it is self signed then it only works if users would install the root certificate.