Reply to post: Internal testing?

Fuming Google tears Symantec a new one over rogue SSL certs

David Roberts
WTF?

Internal testing?

I can see that internal testing of certificate creation, validation, revocation etc. can require bogus certificates.

What I fail to understand is why test systems with bogus certificates were exposed to the Internet.

Surely the main issue is the management and firewalling of the test and development systems to prevent them leaking onto the Internet?

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon