3 ms·
I was not aware of this part. Not being able to disable CA seems like a weird thing to add. In practice how much difference will this make, the list of trusted
by einarfd 3y ago
I was not aware of this part. Not being able to disable CA seems like a weird thing to add. In practice how much difference will this make, the list of trusted CA in browser seems to already be a bit of a problem?
In any case what I want out of this legislation is that you can use an eID from country a in country b. That, that isn't possible is the main downside of the current setup.
- Thorrez 3y agoMajor browsers today only accept CAs that use certificate transparency. This law will force them to accept CAs that don't use certificate transparency. If a CA misbehaves, browsers will distrust it. That happened to Symantec, which was the largest CA. This law will prevent browsers from distrusting CAs that misbehave. https://news.ycombinator.com/item?id=38112520 https://news.ycombinator.com/item?id=38112520