Symantec employees fired for issuing rogue HTTPS certificate for Google

Status
You're currently viewing only grumpy2's posts. Click here to go back to viewing the entire thread.
Not open for further replies.

grumpy2

Ars Scholae Palatinae
1,321
[url=http://meincmagazine.com/civis/viewtopic.php?p=29789839#p29789839:17jib89t said:
Polyorb[/url]":17jib89t]Just weeks to the Let's Encrypt project signing certs.

Symantec did what was necessary, but it's not necessary to rely on this broken CA infrastructure.

You mean, the infrastructure that Let's Encrypt is part of? All they're doing is automating the process of issuing https certificates, and doing it for free. (And they don't, and have no plans to, issue EV certificates like the ones being discussed here at all.

So... I'm not really sure how Let's Encrypt would solve this problem, or how it would avoid "this broken CA infrastructure".

What they're doing is great, no doubt about that. But let's not pretend that it somehow fixes the problems with the CA infrastructure.
 
Upvote
10 (10 / 0)
Status
You're currently viewing only grumpy2's posts. Click here to go back to viewing the entire thread.
Not open for further replies.