Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Taiwan Government Root CA site has no HTTPS enabled
1 point by imrehg on April 14, 2015 | hide | past | favorite
Hi,

Recently I've been checking the status of HTTPS support for Taiwanese financial institutions and government websites, and it's pretty terrifying how bad it is. Today's find seems to take the cake!

The Taiwan Government Root CA (found here: http://grca.nat.gov.tw/GRCAeng/htdocs/index.html ) has no HTTPS enabled whatsoever. As I've checked, the Root Certificate issued by them is in Chrome, so they are obviously doing something, just it might not be something described as "a good job".

Here's the current SSL Labs testing result: https://www.ssllabs.com/ssltest/analyze.html?d=grca.nat.gov.tw If interested in the status of of the project, continuous HTTPS monitoring results are up here: https://gergely.imreh.net/twbankssl/



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: