<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Recent changes to SSL</title><link>https://sourceforge.net/p/vimprobable/wiki/SSL/</link><description>Recent changes to SSL</description><atom:link href="https://sourceforge.net/p/vimprobable/wiki/SSL/feed" rel="self"/><language>en</language><lastBuildDate>Thu, 26 Jun 2014 15:06:18 -0000</lastBuildDate><atom:link href="https://sourceforge.net/p/vimprobable/wiki/SSL/feed" rel="self" type="application/rss+xml"/><item><title>SSL modified by &lt;REDACTED&gt;</title><link>https://sourceforge.net/p/vimprobable/wiki/SSL/</link><description>&lt;div class="markdown_content"&gt;&lt;h1 id="ssl"&gt;SSL&lt;/h1&gt;
&lt;p&gt;Vimprobable will attempt to verify SSL certificates presented by websites against a given CA bundle file. By default, this is &lt;/p&gt;
&lt;p&gt;&lt;code&gt;/etc/ssl/certs/ca-certificates.crt&lt;/code&gt;&lt;/p&gt;
&lt;p&gt;This file can be configured in config.h or (in Vimprobable2) through &lt;/p&gt;
&lt;p&gt;&lt;code&gt;:set cabundle=/path/to/file&lt;/code&gt;&lt;/p&gt;
&lt;p&gt;By default, Vimprobable will refuse to connect to websites whose certificate cannot be verified. To override this, disable the "strict SSL" setting, either in config.h or (Vimprobable2) at run time: &lt;/p&gt;
&lt;p&gt;&lt;code&gt;:set strictssl=false&lt;/code&gt;&lt;/p&gt;
&lt;p&gt;Please be aware that although invalid certificates will still be indicated in the URL bar (red background colour), this will make Vimprobable accept any encrypted connection with unverified communication partners. This will make you vulnerable to man-in-the-middle and other identify spoofing attacks! &lt;/p&gt;&lt;/div&gt;</description><pubDate>Thu, 26 Jun 2014 15:06:18 -0000</pubDate><guid>https://sourceforge.neta4f7b254d34e17aad35155343382fd15f7ba2a3c</guid></item></channel></rss>