<html>
  <head>

    <meta http-equiv="content-type" content="text/html; charset=utf-8">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    <p>Probably needs attention from the board ASAP<br>
    </p>
    <div class="moz-forward-container"><br>
      -------- Forwarded Message --------
      <table class="moz-email-headers-table" border="0" cellpadding="0"
        cellspacing="0">
        <tbody>
          <tr>
            <th valign="BASELINE" align="RIGHT" nowrap="nowrap">Subject:
            </th>
            <td>Re: [llvm-dev] Bugzilla invalid certificate issues</td>
          </tr>
          <tr>
            <th valign="BASELINE" align="RIGHT" nowrap="nowrap">Date: </th>
            <td>Fri, 10 Feb 2017 17:45:05 -0500</td>
          </tr>
          <tr>
            <th valign="BASELINE" align="RIGHT" nowrap="nowrap">From: </th>
            <td>James Y Knight via llvm-dev
              <a class="moz-txt-link-rfc2396E" href="mailto:llvm-dev@lists.llvm.org"><llvm-dev@lists.llvm.org></a></td>
          </tr>
          <tr>
            <th valign="BASELINE" align="RIGHT" nowrap="nowrap">Reply-To:
            </th>
            <td>James Y Knight <a class="moz-txt-link-rfc2396E" href="mailto:jyknight@google.com"><jyknight@google.com></a></td>
          </tr>
          <tr>
            <th valign="BASELINE" align="RIGHT" nowrap="nowrap">To: </th>
            <td>Eric Fiselier <a class="moz-txt-link-rfc2396E" href="mailto:eric@efcs.ca"><eric@efcs.ca></a>, Tanya Lattner
              <a class="moz-txt-link-rfc2396E" href="mailto:tanyalattner@llvm.org"><tanyalattner@llvm.org></a></td>
          </tr>
          <tr>
            <th valign="BASELINE" align="RIGHT" nowrap="nowrap">CC: </th>
            <td>LLVM Developers Mailing List
              <a class="moz-txt-link-rfc2396E" href="mailto:llvm-dev@lists.llvm.org"><llvm-dev@lists.llvm.org></a></td>
          </tr>
        </tbody>
      </table>
      <br>
      <br>
      <div dir="ltr">+1. Chrome been warning about the certificate for a
        year or so now, with steadily increasing severity. Would've been
        nice to fix it back then.
        <div><br>
        </div>
        <div>But, now, it's basically an emergency...the warning has
          made the https parts of the site effectively inaccessible to
          normal users running Chrome.</div>
        <div><br>
        </div>
        <div>A couple people have mentioned that <a
            moz-do-not-send="true" href="http://llvm.org">llvm.org</a>
          was "not working" to me recently. And, I hadn't upgraded
          Chrome yet, so I didn't understand what they were saying at
          the time. But, now I have: the full page blocking warning
          basically makes the site appear inaccessible, unless you're
          looking very closely.
          <div><br>
          </div>
          <div>
            <div>Is there some difficulty with buying a new certificate?</div>
          </div>
          <div><br>
          </div>
          <div>
            <div>Switching to letsencrypt would be best, and free, of
              course, but that takes a little more infrastructure work
              to set up, and I'd understand if maybe nobody's had the
              time to do that yet. Which is fine -- but in the meantime,
              can someone just pay for a new certificate from any of the
              standard CAs?</div>
          </div>
          <div><br>
          </div>
          <div><br>
          </div>
        </div>
      </div>
      <div class="gmail_extra"><br>
        <div class="gmail_quote">On Fri, Feb 10, 2017 at 4:28 PM, Eric
          Fiselier via llvm-dev <span dir="ltr"><<a
              moz-do-not-send="true"
              href="mailto:llvm-dev@lists.llvm.org" target="_blank">llvm-dev@lists.llvm.org</a>></span>
          wrote:<br>
          <blockquote class="gmail_quote" style="margin:0 0 0
            .8ex;border-left:1px #ccc solid;padding-left:1ex">
            <div dir="ltr">Hi all,
              <div><br>
              </div>
              <div>The bugzilla has always had an invalid certificate,
                but in the past week or so Google Chrome has begun
                treating it as a dangerous site. Meaning every time a
                new page is loaded a full-page warning splash appears
                and users have to click through it. This is getting
                really frustrating.</div>
              <div><br>
              </div>
              <div>What would it take to fix this?</div>
            </div>
            <br>
            ______________________________<wbr>_________________<br>
            LLVM Developers mailing list<br>
            <a moz-do-not-send="true"
              href="mailto:llvm-dev@lists.llvm.org">llvm-dev@lists.llvm.org</a><br>
            <a moz-do-not-send="true"
              href="http://lists.llvm.org/cgi-bin/mailman/listinfo/llvm-dev"
              rel="noreferrer" target="_blank">http://lists.llvm.org/cgi-bin/<wbr>mailman/listinfo/llvm-dev</a><br>
            <br>
          </blockquote>
        </div>
        <br>
      </div>
    </div>
  </body>
</html>