3 ms·
> it reduces their potential for abuse. It will also increase the number of errors. The more times a thing is done increases the total number of errors occurri
by joobus 6y ago
> it reduces their potential for abuse.
It will also increase the number of errors. The more times a thing is done increases the total number of errors occurring doing that thing.
- ceejayoz 6y agoA world-class chef may have nicked their fingers more times than I have with a knife, but I suspect their food is still better than mine.
- SquareWheel 6y agoYou're right that more attempts means more chances at failure, but I don't think it's a 1-to-1 relationship. It's when I don't perform a task for a few years that I tend to make mistakes. Even if it's not an automated process (which I think this encourages), then it's easier to keep your skills sharpened by doing something more often. Would Mozilla have accidentally forgotten to renew their browser certificate recently if it were a more frequent task? It's hard to say, but I think it's likely there'd be a stronger procedure in place. There would need to be.
- reidacdc 6y agoThere's a countervailing effect where the more often you do something, the better you get at it. You're right that the absolute number of errors will certainly rise, but the fraction of attempts which have errors will likely fall. As legacy certs expire, the aggregate quality of certs will likely be higher. A secondary question is whether the gain in security is worth the required effort. Obviously Apple believes this, and LetsEncrypt is pretty easy, so even for hobbyists, it's probably at worst an annoyance.