Reply to post: Re: Unintended consequences of Browser Fascism

Netgear's routerlogin.com HTTPS cert snafu now has a live proof of concept

Anonymous Coward
Anonymous Coward

Re: Unintended consequences of Browser Fascism

"Beggars belief really!"

It assumes that Netgear are concerned about the loss of the private key or impersonation of this domain.

Netgear have likely (I'm making the assumption based on setting up these devices) only registered the domain name and provided a valid certificate to avoid browser warnings for end users as the increasing levels of security on the browser (to avoid SSL/TLS/MITM issues) have pushed them in that direction.

That's not a defence, more an explanation of unintended consequences of trying to ensure a pleasant end-user experience while browser security requirements have increased.

Given that the devices don't necessarily have an Internet connection when they are first installed, I'm not sure what the alternative is beside factory installed unique certificates that are valid for the products sales life....

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon