3 ms·
It wouldn't break encryption because you don't give away the private key when requesting a certificate from a CA. It would definitively compromise the identity
by charlesbarbier 11y ago
It wouldn't break encryption because you don't give away the private key when requesting a certificate from a CA.
It would definitively compromise the identity/trust part of it.
- peterwwillis 11y agoLet me rephrase with a quote from the public-key cryptography wiki: "An attacker who could subvert any single one of those certificate authorities into issuing a certificate for a bogus public key could then mount a "man-in-the-middle" attack as easily as if the certificate scheme were not used at all."