Deleting the DigiNotar CA certificate

Revision Information
  • Revision id: 16819
  • Created:
  • Creator: Cheng Wang
  • Comment: Firefox 6.0.1 is out, updating to use that as the primary instruction.
  • Reviewed: Yes
  • Reviewed:
  • Reviewed by: Cww
  • Is approved? Yes
  • Is current revision? No
  • Ready for localization: Yes
  • Readied for localization:
  • Readied for localization by: Cww
Revision Source
Revision Content

Mozilla has learned that a fraudulent SSL certificate for websites belonging to Google has been issued by DigiNotar. This is not a Firefox-specific issue and the certificate has now been canceled which should protect most people.

Mozilla has released an updated version of Firefox to further protect you. Please update Firefox as soon as possible by following the steps in the Update Firefox to the latest release article.

If you need to manually delete the root certificate for DigiNotar, you can do so with the following steps:

  1. In the Menu bar at the top of the screen, click Firefox and then select Preferences or Settings, depending on your macOS version.Click the menu button Fx89menuButton and select Settings.
  2. Click on the Advanced panel
  3. Select the Encryption tab
  4. Click View Certificates
  5. In the Certificate Manager window, select the Authorities tab
  6. Scroll down to DigiNotar and select the DigiNotar Root CA
  7. Click Delete or Distrust...
  8. Click OK to confirm
    • Because the certificate is "built-in" it will be distrusted but not deleted. Distrusting the certificate has the same effect as deleting it.

diginotar-win-1

diginotar-mac-1

diginotar-lin-1