Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
freeone3000
1y ago
0 comments
Save
Share
Certs should be checked against a CRL and CT for revocation, and expired certs should never be accepted, for this reason among others.
0 comments
1 comments · 1 top-level
top
newest
oldest
bawolff
1y ago
CT isn't used for revocation. CRLs aren't really a thing in practise. Refusing to accept expired certs is important for other reasons but won't save you from a reused ECDSA nonce.
j
/
k
navigate · click thread line to collapse