Update InsecureTrustManager.qhelp

Fixed typos and carried out and editorial review
This commit is contained in:
mc
2021-11-22 11:35:09 +00:00
committed by Tony Torralba
parent 7a1a45f5f9
commit c105d71952

View File

@@ -4,8 +4,8 @@
<qhelp> <qhelp>
<overview> <overview>
<p> <p>
If the <code>checkServerTrusted</code> method of a <code>TrustManager</code> never throws a <code>CertificateException</code> it trusts every certificate. If the <code>checkServerTrusted</code> method of a <code>TrustManager</code> never throws a <code>CertificateException</code>, it trusts every certificate.
This allows an attacker to perform a machine-in-the-middle attack against the application therefore breaking any security Transport Layer Security (TLS) gives. This allows an attacker to perform a machine-in-the-middle attack against the application, therefore breaking any security Transport Layer Security (TLS) gives.
</p> </p>
<p> <p>
@@ -42,6 +42,6 @@ is loaded into a <code>KeyStore</code>. This explicitly defines the certificate
</example> </example>
<references> <references>
<li>Android Develoers:<a href="https://developer.android.com/training/articles/security-ssl">Security with HTTPS and SSL</a>.</li> <li>Android Developers: <a href="https://developer.android.com/training/articles/security-ssl">Security with HTTPS and SSL</a>.</li>
</references> </references>
</qhelp> </qhelp>