<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for </title>
	<atom:link href="http://www.infosentry.org/comments/feed" rel="self" type="application/rss+xml" />
	<link>http://www.infosentry.org</link>
	<description></description>
	<lastBuildDate>Mon, 18 Apr 2011 23:00:19 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
	<item>
		<title>Comment on Let&#8217;s stop fear mongering and non-sense about Comodo Compromise and import the CRL by Farshad Abasi</title>
		<link>http://www.infosentry.org/archives/39/comment-page-1#comment-8</link>
		<dc:creator>Farshad Abasi</dc:creator>
		<pubDate>Mon, 18 Apr 2011 23:00:19 +0000</pubDate>
		<guid isPermaLink="false">http://infosentry.org/archives/39#comment-8</guid>
		<description>You bring up an interesting issue: should these things be preconfigured in the application or be dynamically configured via updates from a central server? Each has pros and cons...</description>
		<content:encoded><![CDATA[<p>You bring up an interesting issue: should these things be preconfigured in the application or be dynamically configured via updates from a central server? Each has pros and cons&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Security: Sometimes less is more by Farshad Abasi</title>
		<link>http://www.infosentry.org/archives/71/comment-page-1#comment-7</link>
		<dc:creator>Farshad Abasi</dc:creator>
		<pubDate>Mon, 18 Apr 2011 22:39:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.infosentry.org/archives/71#comment-7</guid>
		<description>This morning, my Windows PC at work asked me to reset my password or it will expire (again) in 19 days! I THOUGHT I JUST CHANGED THAT! And I am running out of passwords I can easily remember that have upper case + lower case + numbers + characters at the same time! Not to mention that I use different system that use separate passwords, and they also require similarly complex passwords, and they want me to REMEMBER then AND change them all the time :) Yes, there are tools to help people in my situation, but I completely agree with you in that security should be a balance between risk, cost and usability. Most techies get too caught up in the (fun) technical stuff.</description>
		<content:encoded><![CDATA[<p>This morning, my Windows PC at work asked me to reset my password or it will expire (again) in 19 days! I THOUGHT I JUST CHANGED THAT! And I am running out of passwords I can easily remember that have upper case + lower case + numbers + characters at the same time! Not to mention that I use different system that use separate passwords, and they also require similarly complex passwords, and they want me to REMEMBER then AND change them all the time <img src='http://www.infosentry.org/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  Yes, there are tools to help people in my situation, but I completely agree with you in that security should be a balance between risk, cost and usability. Most techies get too caught up in the (fun) technical stuff.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Let&#8217;s stop fear mongering and non-sense about Comodo Compromise and import the CRL by Mian Khurrum</title>
		<link>http://www.infosentry.org/archives/39/comment-page-1#comment-6</link>
		<dc:creator>Mian Khurrum</dc:creator>
		<pubDate>Mon, 04 Apr 2011 01:35:07 +0000</pubDate>
		<guid isPermaLink="false">http://infosentry.org/archives/39#comment-6</guid>
		<description>Firefox 4 will allow you to import a CRL. You can also enable OSCP and set the browswer to fail if OSCP status of a cert cannot be verified. There are also reports that Firefox has hard coded a number of certs as being fradulent. I&#039;ll be posting some details on this tonight. You are right, both Chrome and IE are showing these certs as being revoked in the configuration, which is the best thing to do as it does not required checking a CRL or contact OSCP server.

Mian Khurrum</description>
		<content:encoded><![CDATA[<p>Firefox 4 will allow you to import a CRL. You can also enable OSCP and set the browswer to fail if OSCP status of a cert cannot be verified. There are also reports that Firefox has hard coded a number of certs as being fradulent. I&#8217;ll be posting some details on this tonight. You are right, both Chrome and IE are showing these certs as being revoked in the configuration, which is the best thing to do as it does not required checking a CRL or contact OSCP server.</p>
<p>Mian Khurrum</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Let&#8217;s stop fear mongering and non-sense about Comodo Compromise and import the CRL by BBGT</title>
		<link>http://www.infosentry.org/archives/39/comment-page-1#comment-5</link>
		<dc:creator>BBGT</dc:creator>
		<pubDate>Sun, 03 Apr 2011 05:45:21 +0000</pubDate>
		<guid isPermaLink="false">http://infosentry.org/archives/39#comment-5</guid>
		<description>O.K., but I find it a bit odd that I can see the revoked certificates in Google Chrome but not in Firefox (both updated to latest versions).

Would you happen to know why the difference between these two browsers?</description>
		<content:encoded><![CDATA[<p>O.K., but I find it a bit odd that I can see the revoked certificates in Google Chrome but not in Firefox (both updated to latest versions).</p>
<p>Would you happen to know why the difference between these two browsers?</p>
]]></content:encoded>
	</item>
</channel>
</rss>

