4 ms·
Yes, it seems like they revoked the rest on 2024-02-06. I missed that. However, they seem to be absolutely unwilling to improve their processes.
by MaKey 2y ago
Yes, it seems like they revoked the rest on 2024-02-06. I missed that. However, they seem to be absolutely unwilling to improve their processes.
- Avamander 2y agoThen they must be removed. It's also one of the reasons why I find it so annoying that I can't disable CAs in iOS and Android trust stores manually.
- ysleepy 2y agoIt appears disabling trust roots is possible on my samsung Android at least.
- Arnt 2y agoSo assume they're removed. As it happens, one of the unwilling customers is the police force where I live. I can tell you what the police would have answered: "We're supposed to take down the police servers outside our normal schedule for a problem that does not affect us? Are you serious?" How do you suggest that the next CA should answer?
- asimops 2y agoEasy answer. If you are not comfortable with the basic requirements that each and every CA in the PKI is required to follow, you should host your own PKI and manage trust yourself as well.
- Avamander 2y ago> As it happens, one of the unwilling customers is the police force where I live. I can tell you what the police would have answered: "We're supposed to take down the police servers outside our normal schedule for a problem that does not affect us? Are you serious?" How do you suggest that the next CA should answer? Should have picked a CA that can follow fundamental rules that apply to every CA that wishes to be trusted, shouldn't have fucked around and found out,