Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> Nobody trusts CAs.

Hundreds of millions of consumers use devices that implicitly trust CAs today.

You're usually spot on, but in this case you're dead wrong. Most humans that use the internet use devices that trust CAs absolutely - which is exactly why they're being subverted for government interception.



This boils down to a semantic disagreement. You say people "trust" CAs because they don't know or care about them. I say that to "trust" a CA, you have to know what one is, and nobody who knows what a CA is trusts them anymore.

The distinction between these two vantage points isn't particularly relevant to my point; at least, I don't think it is.


The difference is explicit and implicit trust. Even if you explicitly distrust CAs, almost everything on your system implicitly trusts them.


Sure, that's a good way to put it, and I'm obviously aware of this, but it's not the point I'm making. :)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: