4 ms·
We can add or remove root certificates for OS, it's just deliberately not easy.
by likelynew 9y ago
We can add or remove root certificates for OS, it's just deliberately not easy.
- chaz6 9y agoThis makes me think that the package containing the trusted certificate list ought to be separated into a standalone repository, so that it is easy to change (like how you subscribe to an adblock list).
- bryanrasmussen 9y agothe implication being that if you don't find it easy enough to do it, then you probably aren't expert enough that you should be doing it.
- snakeanus 9y ago> it's just deliberately not easy And thus crippled and useless against state attackers. I fail to see the reason why my browser refuses to let me "pin" a CA only for certain sites for example.