Live data from Hacker News

Trusted End Node Security

spi.dod.mil

1–10 of 31 posts

Re: Trusted End Node Security

#3
I downloaded this and played with it a while back when I was looking for a "LiveCD"-type of distro to use on a standalone, offline machine.

It's not the worst option out there, but it's far from a "general purpose" Linux LiveCD.

Re: Trusted End Node Security

#4
post #2

This doesn't work for me - I need to have the Department of Defense root certificate installed, but I'm not sure I'm willing to do that...

No you don't. At least not even on old IE 11, and I can't imagine any other browser doing it worse (and I know Firefox). The browser is supposed to allow you to access the site my just confirming that you want. No root certificates.

Re: Trusted End Node Security

#7
spi.dod.mil uses an invalid security certificate.

The certificate is not trusted because the issuer certificate is unknown. The server might not be sending the appropriate intermediate certificates. An additional root certificate may need to be imported.

Error code: SEC_ERROR_UNKNOWN_ISSUER

----

Neat

Re: Trusted End Node Security

#8
Folks, the reason you get a certificate error is because this .mil site uses a certificate signed by the DoD CAs and none of the major OS/browsers ship with them pre-installed (for what should be obvious reasons).

Re: Trusted End Node Security

#9
post #8

Folks, the reason you get a certificate error is because this .mil site uses a certificate signed by the DoD CAs and none of the major OS/browsers ship with them pre-installed (for what should be obvious reasons).

NSA Information Assurance Division site has the same issue – http://www.iad.gov/
Post reply on HN