Hacker News new | past | comments | ask | show | jobs | submit login

I see. Using the private key to revoke the certificate would be a denial of service attack, so requiring the CA for revocation avoids that, but admittedly it's not the first thing to worry about when a private key is compromised.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: