2
So, I've generated a rootCA, and signed a certificate for *.a.com, how can I trust the resulting certificate in Firefox/Chrome, without trusting the CA directly?
Note that adding an exception (once) is not enough in this case, since there are multiple domains.
Did this answer your question? – mtak – 2014-06-12T09:26:48.007