[SSL Observatory] Quick survey -- can we really manage domains of trust separation?

ArkanoiD ark at eltex.net
Mon Feb 27 01:23:28 PST 2012


Hi,

Might be slightly offtopic for this list, but I am trying to gather some data
to figure out if application software is really capable of dealing with trust
properly. So if there is something that works with X.509 certificates on your computer,
mobile device, appliance, whatever, please fill and send me privately the following simple form:

1. Platform/OS Version
2. The name of software or component (WiFi, VPN, IM, email client when dealing with TLS, whatever)
3. Can it be set up to use different (not the default one used by web browser) certificate store?
4. Does it trust "Internet" PKI roots by default?
5. Is it possible to set up trust on per-root basis?
6. Is it possible to set up trust on per-certificate basis?
7. Any further details, screenshots, anything that helps me to figure out how this implementation works.

The survey is open for 2 weeks from now, and I will publish results here.

Please do not post to the list for obvious reasons.



More information about the Observatory mailing list