Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
yugcesofni
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
16 ms
·
1.
▲
by
yugcesofni
2y ago
There's little evidence to support this afaict. Certs generated using non-default Roots are limited to 825 days in validity, more than twice the limit for those generated using the defautl roots.
2.
▲
by
yugcesofni
2y ago
FWIW, a slight clarification here would be that the majority of TLS certificates are issued by CAs in the US, but the majority of CAs are not headquartered in the US.
3.
▲
by
yugcesofni
2y ago
Not just Safari, but all TLS connections instantiated on Apple OSes
4.
▲
by
yugcesofni
11y ago
I think this is the experience of a lot of people and good security folks are taking notice to try and help: https://blog.digicert.com/understanding-the-google-chrome-co...
5.
▲
by
yugcesofni
12y ago
Considering you can get much of this functionality from programs created by CAs (for example, https://www.digicert.com/cert-inspector.htm from my CA), this seems... way too expensive.