Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> Any compromised root certificate will almost certainly be revoked before it naturally expires.

How long will revocation lists have to be in the year 2100 if nothing expired?



I'm guessing root cert expiration data growth is much lower than storage density improvements. And of course you don't need to revoke a certificate that was never on the device in the first place.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: