Hacker News new | ask | show | jobs
by hn-miw-i 4914 days ago
http://gaurangkp.wordpress.com has this completely wrong. I wished he had published my comment on his blog (I was first post).

Nokia is NOT intercepting https. The actual TLS session is run via a https proxy. No interception occurring. The guy who broke this has no understanding of the TLS protocol or PKI in general. He tried to say the root verisign certs in windows were being proof. bullshit.

its 2 TLS sessions -- or TLS in TLS proxy. No problem. Go back to sleep.