Hacker News new | past | comments | ask | show | jobs | submit login

It's "apply more of the same" compared to the CA system. Cert pinning is different, that part is controlled by the actual cert owner, but only starting on second connection.



Well, "trust on first use without revocation" is an entirely special kind of broken key distribution. But then again, they are all broken.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: