[HTTPS-E Rulesets] Broken Rules

Andreas Jonsson andreas at romab.com
Mon Jul 25 00:08:05 PDT 2011


On 7/23/11 3:00 AM, John Doe wrote:
> DVDFab doesn't work anymore.

Apparently they started serving http on port 443 :(
This rule should probably be removed.

> 
> With Economist disabled, HTTPS redirects to HTTP. Enabled, it seems to loop
> until it finally settles on HTTPS but it's an unverified certificate and it
> disables the Tweet buttons on article pages. I recommend disabling it.

I have no certificate issues  with the Economist (I assume you mean
economist.com?), so i disagree. The certificat here is signed by thawte,
so looks ok here.

Also seems to look OK in ssl labs checks:
https://www.ssllabs.com/ssldb/analyze.html?d=www.economist.com&s=64.14.173.20

/andreas



More information about the HTTPS-Everywhere-Rules mailing list