Changes

Jump to: navigation, search

SecurityEngineering/Public Key Pinning

2 bytes removed, 22:08, 12 May 2014
Built in Pins
We are attempting to:
# Pin all of the sites that Chrome already does (Google, Twitter) by importing chromium's pinset.
# Pin our own sites after auditing them and cleaning them up, so that our users know that the updates we serve actually come from us. The list of initial mozilla sites that are pinned is being tracked at: https://mana.mozilla.org/wiki/display/services/Mozilla+sites+SSL+Certificate+Authority+roots+sync+with+Gecko+Built-In+Pins
# Pin other popular sites like Facebook that are in good shape already (with their cooperation, of course)
Tracking bug: {{bug|1004350}}
 
==Pinning Service ==
Confirm
76
edits

Navigation menu