mozilla / tls-canary

DEPRECATED - TLS regression scanner for Firefox
https://tlscanary.mozilla.org/
Mozilla Public License 2.0
18 stars 15 forks source link

Regress EV Treatment #183

Closed wthayer closed 2 years ago

wthayer commented 6 years ago

Add the ability for TLS Canary to detect changes in the EV treatment given to sites in Firefox. This would be nice to test Symantec-distrust-related changes in bug 1486838

cr commented 6 years ago

Can you be more specific what properties to look at and where they live?

wthayer commented 6 years ago

I'm not aware of any EV property being exposed by Firefox outside of the actual UI in the address bar that displays the O and C fields of the cert's Subject when it's a valid EV cert. I think someone familiar with the Firefox code that processes EV certificates can help, but this project might provide some clues: https://github.com/mozkeeler/ev-checker