Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You're insinuating that the Let's Encrypt roots are compromised?

https://letsencrypt.org/repository/#isrg-legal-transparency-...



No, but it’s a well-established fact that some CAs are run by governments, some of which are publicly trusted by browsers.


The mainstream root stores all require Certificate Transparency now.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: