Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Your browser and OS quickly delist any certificate found to have forged a certificate for a website they don't own. They're unapologetic about it too - and don't care who they piss off.


However, browsers have played along with US legislation previously. (E.g., when long key encryption was restricted to US versions only.) I'm not sure, if Mozilla would be playing along nowadays, but you can't be too sure, either. Moreover, you could consider certificates installed by antivirus software as some kind of prior art to this. (While considered a security risk, at least by some, they are not delisted.)


Antivirus ones generate the root certificate on your machine.


As may do installer software shipped by the ISP (mandatory or incentivized by cloud storage, etc.)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: