Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

blog.torproject.org uses an invalid security certificate.

This site uses HTTP Strict Transport Security (HSTS) to specify that Firefox may only connect to it securely. As a result, it is not possible to add an exception for this certificate.



You may be behind a corporate firewall that is blocking access to the site.


More like a corporate MitM exploit, which HSTS is detecting.


Even a corporate proxy will work with HSTS.


You're right. I forgot I was on my work VPN.


Certificate is valid for me using Safari (expires October 7th).


Works fine for me, using Firefox 61.0.2.


Is your clock correct?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: