Gentoo Archives: gentoo-dev

From: Michael Orlitzky <michael@××××××××.com>
To: gentoo-dev@l.g.o
Subject: Re: [gentoo-dev] friendly reminder wrt net virtual in init scripts
Date: Tue, 05 Nov 2013 16:39:18
Message-Id: 52791F2E.2020704@orlitzky.com
In Reply to: Re: [gentoo-dev] friendly reminder wrt net virtual in init scripts by mingdao
1 On 11/05/2013 09:49 AM, mingdao wrote:
2 >
3 > Flameeyes wrote the following blog post concerning this issue:
4 >
5 > http://blog.flameeyes.eu/2012/10/may-i-have-a-network-connection-please
6 >
7 > and the link gives me a (Error code: sec_error_ocsp_unknown_cert).
8 >
9
10 You should disable OCSP anyway. In Firefox, it's under,
11
12 Edit -> Preferences -> Advanced -> Encryption -> Validation
13
14 The OCSP protocol is itself is vulnerable to MITM attacks, which is cute
15 when you consider its purpose.
16
17 Moreover, it sends the address of every website you visit to a third
18 party, which is the real reason to disable it IMO.

Replies

Subject Author
Re: [gentoo-dev] friendly reminder wrt net virtual in init scripts mingdao <gentoo-dev@×××××××××××××××××××××.com>
Re: [gentoo-dev] friendly reminder wrt net virtual in init scripts Daniel Campbell <lists@××××××××.us>
Re: [gentoo-dev] friendly reminder wrt net virtual in init scripts "Thomas D." <whissi@××××××.de>