Reply to post:

'No BS' web host Gandi lives up to half of its motto... Some customer data wiped out in storage server meltdown

zb42

Moxie Marlinspike, known for signal messenger and entertaining blogging about ocean sailing, has a bit of history with Gandi.

Marlinspike make a browser plug-in that anonymized google searches. Ghandi broke it by cancelling the SSL certificate without warning.

A decade ago he found that they accepted null characters in SSL certificates, allowing the issue of certificates that some browsers accepted as being for someone else's website. Ghandi locked his account without warning and customer service later told him he was personally banned.

When the certificates were approaching expiry Ghandi sent him emails suggesting renewals, with links that worked to renew the certificates

El reg passim links

https://www.theregister.co.uk/2010/04/05/googlesharing_cert_revoked/

https://www.theregister.co.uk/2009/07/30/universal_ssl_certificate/

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Biting the hand that feeds IT © 1998–2021