[Pidgin] #12312: GoDaddy Root Certificate and wildcard bug

Pidgin trac at pidgin.im
Sat Sep 4 14:44:58 EDT 2010


#12312: GoDaddy Root Certificate and wildcard bug
-----------------------------------------+----------------------------------
 Reporter:  ladar                        |        Owner:  darkrain42
     Type:  defect                       |       Status:  new       
Milestone:  2.7.3                        |    Component:  libpurple 
  Version:  2.7.1                        |   Resolution:            
 Keywords:  godaddy certificate ssl tls  |  
-----------------------------------------+----------------------------------
Changes (by darkrain42):

  * status:  closed => new
  * resolution:  fixed =>


Comment:

 Replying to [comment:7 jon]:
 > I recently brought up a new system with a new GoDaddy wildcart cert.
 Windows Pidgin 2.7.3 clients still get a certificate warning popup when
 connecting.  The Debug window shows the issue:
 >
 > certificate/x509/tls_cached: Certificate Authority with
 DN='serialNumber=07969287,CN=Go Daddy Secure Certification
 Authority,OU=http://certificates.godaddy.com/repository,O="GoDaddy.com,
 Inc.",L=Scottsdale,ST=Arizona,C=US' not found. I'll prompt the user, I
 guess.
 >
 > Is it possible to have all the GoDaddy CAs installed to prevent these
 warnings?

 It's possible, but I'm not going to do it.  As I said previously, we're
 not going to add intermediate CAs unless there's no way the server's going
 to fix it (which really is only the case for Microsoft's MSN servers) --
 your server should be sending the intermediate CAs to the client along
 with the end-server cert.

 I ''will'' add the necessary root for that ICA, since it's missing in our
 store (and some of the others...if I can find a decent explanation of what
 the differences between all of them are).

-- 
Ticket URL: <http://developer.pidgin.im/ticket/12312#comment:8>
Pidgin <http://pidgin.im>
Pidgin


More information about the Tracker mailing list