Re: CNNIC Root Inclusion

10 views
Skip to first unread message

wanghx

unread,
Feb 2, 2010, 3:17:13 AM2/2/10
to wl...@googlegroups.com
Alex, I'm sure evidence means nothing to those rubbishes.  :)
You can try.  I just don't bother to even talk to them.  I bet you will finally know it's the best way that you can do. :)

2010/2/2 Alex
No, never should we abandon billions of Chinese people lack of freedom. Enough is enough, I'll try to contact Mozilla Online (I serve for them) and see if they can help, though of little possibility. However, we should attempt to convince them by using the following evidences:
  1. CNNIC have a software product, wide spread, malicious. The vendor of the software is CNNIC. The name of the software is CNNIC Chinese Internet.
  2. CNNIC is a government operated company just like China Mobile. This can be confirmed by http://www.cnnic.cn/en/index/0Q/index.htm (English), "CNNIC takes orders from the Ministry of Information Industry (MII) to conduct daily business, while it was administratively operated by Chinese Academy of Sciences (CAS). " CAS is part of Chinese government.
Still I must figure out that there is no evidence that CNNIC, though highly suspicious, launched one or more MitM attack. Thus, CNNIC is innocent till now, regarding about MitM attack.
Do not discuss politics, though dislike Chinese government, anyone holding that opinion must at least show some respect to others. DO NOT CALL ANYONE RUBBISH, this will not make your argument more convincing, only disgusting and will obviously lose your supporters.
In my opinon, they do not hear because we are not convincing enough. We MUST find more convincing evidences, such as the binary of CNNIC Chinese Internet! Send him a copy, give hjm the address to download! Remember to tell him that it is malicious. Anyway, EVIDENCE COUNTS. One can not try to bolster his ideas by not citing and argue without evidence. I DO believe this cert CAN be removed.
人身攻击通常是五毛党实在无话可说的时候说的,如果我们还有证据,用证据说服别人而不是用人身攻击的办法。
如果需要学习英文以论文的写作,请抓紧时间查阅GRE Issue作文的写作方法。
 
--
以公民个人身份签署国际人权宪章 http://j.mp/udhr-ss 如无法打开签名网页可发空信给 udhr19...@gmail.com 收到自动回信的签名表格,填写后寄回给 udhr...@gmail.com 即可。请广为传播。

wanghx

unread,
Feb 2, 2010, 3:28:34 AM2/2/10
to wl...@googlegroups.com, lihlii-g
I'm not going to waste you precious time debating with me.  But I think it's impossible to ask Firefox to remove that rogue CNNIC CA now.  Some of those who are holding power repeated again and again that until there is evidence that CNNIC CA did certificate based MITM attacks, their root CA won't be "considered" to be removed. :)

Also it's not possible to ask Entrust.net to revoke the CNNIC SSL secondary CA, because Entrust is doing business in China now.  They opened entrust.com.cn. :)

"Rubbish" is not "人身攻击“, but "personal attack".  Please see: 
什么是人身攻击 https://groups.google.com/group/lihlii/browse_frm/thread/67fac2b88280f9/

GRE writing is good, but not good for rubbishes. :)  Alex and other friends can try to prove your arguments to the Mozilla rubbishes, but I just abandon.

I think it's better to use our time on improving Certificate Patrol and things alike to help the users protect their privacy from MITM certificate spoofing attacks.

2010/2/2 Alex

malicious. Anyway, EVIDENCE COUNTS. One can not try to bolster his ideas by not citing and argue without evidence. I DO believe this cert CAN be removed.
人身攻击通常是五毛党实在无话可说的时候说的,如果我们还有证据,用证据说服别人而不是用人身攻击的办法。
如果需要学习英文以论文的写作,请抓紧时间查阅GRE Issue作文的写作方法。
 
Reply all
Reply to author
Forward
0 new messages