Open Bug 1156014 Opened 10 years ago Updated 2 years ago

OCSP pref doesn't make it clear that extended validation will be affected by it

Categories

(Firefox :: Security, defect)

defect

Tracking

()

People

(Reporter: james.burton, Unassigned)

References

(Blocks 1 open bug)

Details

Attachments

(1 file)

Attached image ecssl.png (deleted) —
User Agent: Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2369.0 Safari/537.36

Steps to reproduce:

Go go to https://www.symantec.com or https://www.digicert.com.


Actual results:

Both sites don't show Extended Validation SSL. Both sites are issued with EV.


Expected results:

Both sites should show green bar with the company name.
Component: Untriaged → Security
I fixed the problem by checking the checkbox (Query OCSP responder servers to confirm the current validity of certificates).

I think Mozilla needs to remove the checkbox and place the option in the about:config.
Updating summary to more directly explain the issue.
Blocks: 1029832
Status: UNCONFIRMED → NEW
Ever confirmed: true
OS: Windows 7 → All
Hardware: x86 → All
Summary: Extended Validation Not Working in Nightly 40.0a1 → OCSP pref doesn't make it clear that extended validation will be affected by it
Version: 40 Branch → unspecified
Severity: normal → S3
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Creator:
Created:
Updated:
Size: