Honest Ahmed (2011)
bugzilla.mozilla.org
Honest Ahmed (2011)
1–10 of 58 posts
Re: Honest Ahmed (2011)
#2Achmed, not Ahmed ...
Re: Honest Ahmed (2011)
#3The best part is the website hxxps://www.honestachmed.dyndns.org/ is still up.
Re: Honest Ahmed (2011)
#4(2011)
Re: Honest Ahmed (2011)
#5why trust the others and not Achmed?
Re: Honest Ahmed (2011)
#6I get the sense it's not serious, but is there any more context?
Re: Honest Ahmed (2011)
#7[deleted]
Re: Honest Ahmed (2011)
#8Am I the only one that understands 10% of what's going on? Obviously they won't add his CA, and there seems to be some other links to joke requests, but what am I missing?
Re: Honest Ahmed (2011)
#9[deleted]
Re: Honest Ahmed (2011)
#10I get the sense it's not serious, but is there any more context?
From the thread it seems like they’re poking fun at browser vendors adding untrustworthy CAs to their trust store and not removing them even for egregious violations.
Their point is that Honest Achmed is at least as honest as some of the other CAs they’ve allowed in. This issue was closed a few times because Honest Achmed hadn’t completed an external audit. It was reopened each time by users who pointed out that audits were redundant if Achmed quickly issued a tonne of certificates and became too big to remove.
In other words, this issue is an implicit critique of browsers certificate policies.