ietf-smime
[Top] [All Lists]

Re: [saag] [Cfrg] Further MD5 breaks: Creating a rogue CAcertificate

2009-01-06 03:59:01

"Timothy J. Miller" <tmiller(_at_)mitre(_dot_)org> writes:

The only reliable way to nuke a trusted cert from Windows is touch management
of workstations.

It's worse than that, there is no reliable way to remove trusted certs from
Windows.  See Paul Hoffman's analysis at
http://www.proper.com/root-cert-problem/.

Peter.

<Prev in Thread] Current Thread [Next in Thread>