Deleting the DigiNotar CA certificate

Revision Information
  • Revision id: 16793
  • Created:
  • Creator: Michael Verdi
  • Comment: changed wording to make it clearer that it was a problem due to google, added a clarification that the certificate will be distrusted rather than deleted
  • Reviewed: Yes
  • Reviewed:
  • Reviewed by: Verdi
  • Is approved? Yes
  • Is current revision? No
  • Ready for localization: Yes
  • Readied for localization:
  • Readied for localization by: Verdi
Revision Source
Revision Content

Mozilla has learned that a fraudulent SSL certificate for websites belonging to Google has been issued by DigiNotar. This is not a Firefox-specific issue and the certificate has now be canceled which should protect most people.

Mozilla will be releasing an update to Firefox to further protect you from this. Until the update is released you can manually delete this certificate with these steps:

  1. In the Menu bar at the top of the screen, click Firefox and then select Preferences or Settings, depending on your macOS version.Click the menu button Fx89menuButton and select Settings.
  2. Click on the Advanced panel
  3. Select the Encryption tab
  4. Click View Certificates
  5. In the Certificate Manager window, select the Authorities tab
  6. Scroll down to DigiNotar and select the DigiNotar Root CA
  7. Click Delete or Distrust...
  8. Click OK to confirm
    • Because the certificate is "built-in" it will be distrusted but not deleted. Distrusting the certificate has the same effect as deleting it.

diginotar-win-1

diginotar-mac-1

diginotar-lin-1