Hacker News new | ask | show | jobs
by feelin_googley 3124 days ago
"Like a small child, your operating system believes in "stranger danger" and doesn't trust self-signed certificates."

[ ] True [x] False

First, is it the OS that distrusts certificates, or is it the HTTP client?

Second, CA certificates such as the ones trusted by HTTP clients (contained in "browsers") are self-signed certificates.

Pre-installed CA certificates in corporate HTTP clients (e.g., Chrome, etc.) and CA certificates in downloadbale "bundles" available from corporations (e.g., Mozilla) are self-signed.