Don't submit to the SSL cert racket. You can get one for no charge
51–60 of 88 posts
Re: Don't submit to the SSL cert racket. You can get one for no charge
#52Second, I just got a "Error 107 (net::ERR_SSL_PROTOCOL_ERROR): SSL protocol error." at https://auth.startssl.com
For a product that is supposed to be confidence inspiring, StartSSL is the opposite.
Re: Don't submit to the SSL cert racket. You can get one for no charge
#53Is it possible to sign object code (.exe , .dll etc) with any SSL certificate that we buy ? or does this have to be mentioned clearly in the list of features of SSL certificate..
Re: Don't submit to the SSL cert racket. You can get one for no charge
#54Earlier quoted context omitted.
I'm actually shocked at how many places accept the trust chain of my free SSL certificate from Gandi. Some browsers refuse my company's very expensive wildcard certificate from GoDaddy saying it's not trusted but trust mine from Gandi!
Their certs are issued by Comodo, which is a well established CA. And they are hardly free , their price is simply rolled into the domain registration fee.
[1] https://en.wikipedia.org/wiki/Comodo_Group#Breach_of_securit... [2] http://www.securelist.com/en/blog/6177/A_Web_of_Mis_Trust_Co...
Re: Don't submit to the SSL cert racket. You can get one for no charge
#55I did not get a good feeling about StartSSL when I tried getting a free cert. First, as many have pointed out, the web site experience is miserable. Second, I just got a "Error 107 (net::ERR_SSL_PROTOCOL_ERROR): SSL protocol error." at https://auth.startssl.com For a product that is supposed to be confidence inspiring, StartSSL is the opposite.
Re: Don't submit to the SSL cert racket. You can get one for no charge
#56I've used StartSSL in the past. I will never do so again. Yes, the certs are free, and yes, they work in all common browsers. But the process of obtaining them is a horror of Lovecraftian proportions. I'll happily pay a few dollars to Namecheap to be able to avoid the nightmare that is StartSSL's UI.
Re: Don't submit to the SSL cert racket. You can get one for no charge
#57I've used StartSSL in the past. I will never do so again. Yes, the certs are free, and yes, they work in all common browsers. But the process of obtaining them is a horror of Lovecraftian proportions. I'll happily pay a few dollars to Namecheap to be able to avoid the nightmare that is StartSSL's UI.
I second this experience, and "Lovecraftian" is indeed an excellent way to describe it. It's not just that the process was difficult, it's that my confidence dwindled through every strange and baffling step. Since you mentioned paying "a few dollars" to Namecheap, can you comment on the feasibility of their $8.95 "PositiveSSL" certificate? ( http://www.namecheap.com/ssl-certificates/comodo.aspx )
Re: Don't submit to the SSL cert racket. You can get one for no charge
#58I'd like to create a wild card certificate, but that costs money. My understanding is that it is a one off fee (60USD) for them to validate your identity and that it doesn't cost money to renew after that point. I could be wrong though. It's not completely clear.
Re: Don't submit to the SSL cert racket. You can get one for no charge
#59Re: Don't submit to the SSL cert racket. You can get one for no charge
#60The SSL certificate for https://grepular.com/ is from StartSSL. I renewed it 5 days ago. The CN is for "secure.grepular.com" (for historical reasons), with a subjectAltName of "grepular.com" I'd like to create a wild card certificate, but that costs money. My understanding is that it is a one off fee (60USD) for them to validate your identity and that it doesn't cost money to renew after that point. I could be wrong…