Recently there has been a lot of discussion on the topic of Firefox 3’s warnings about SSL certificates which are invalid or not signed by a known authority (“self-signed”). Following on from johnath’s earlier excellent blog post, our position on the subject is set out in “Firefox 3 and Self-Signed Certs“.

This page explains why Firefox 3’s SSL UI was designed the way it was, and why we think it’s right.

