HTTPS fail

Check out what happens when you visit :

Clicking through Firefox’s ridiculous hoops gets me these dialogs:

Good work, Google and Firefox respectively!

This entry was posted in Uncategorized and tagged


  1. Adam Prime
    Posted January 15, 2009 at 23:40 | Permalink

    It’s not just, it’s, and probably every single other one of their regional domains.

  2. Jim Battle
    Posted January 16, 2009 at 08:57 | Permalink

    I don’t understand why you are blaming Firefox. It is doing a stand-up job of making it obvious that the “security” cert you have been fed isn’t configured properly. You may know and trust google, but many many websites present a security facade that the typical person will not understand is a sham.

    Do you think sweeping it under the rug is the correct behavior for the browser? If so, why bother with https?

  3. Posted January 16, 2009 at 10:46 | Permalink

    @Jim — I can see the point of it, yes. The thing that gets my goat is the sheer number of hoops I have to jump through to satisfy their UI. IMO, a single dialog would have been appropriate for approval of hostname-mismatching certs…