Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

What would be the point of accepting a certificate that was revoked for non-security reasons?

Might as well not even revoke it…

If a CA issues a certificate to the wrong entity, they won’t have knowledge of a key compromise as there is no such thing in this case — they only know that they issued something wrong…



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: