‹ BackHN Continuity

Thread

Building a certificate authority for the whole Internet

73 points · 57 comments · ewpratten

  1. MisterMunchkin · · focus · HN ↗
    It makes sense for them to issue their own certificates because it’s inline with the rest of their offerings, but it seems kind of strange you can just buy someone else’s root certificate and issue under their name. It kind of defeats the point of trusting the root. What if a bad actor starting buying up authorities? You could compromise a bunch of services without them even knowing.
    1. Tomte · · focus · HN ↗
      It is, but that‘s why I trust Honest Achmed (<a href="https:&#x2F;&#x2F;bugzilla.mozilla.org&#x2F;show_bug.cgi?id=647959" rel="nofollow">https:&#x2F;&#x2F;bugzilla.mozilla.org&#x2F;show_bug.cgi?id=647959). He is a man of integrity and will not be bought!
Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.