Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Won't all the client machines already have hundreds of 3rd party CAs (including Let's Encrypt) loaded onto them anyway?


Yea, by default anyways, but that doesn’t mean you need to use/trust them for a particular request. I’m talking mostly about service-to-service traffic fwiw, not browsers.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: