Or the more likely a rouge certificate authority giving out certs it shouldn’t.
Comment on Decreasing Certificate Lifetimes to 45 Days
False@lemmy.world 4 hours agoIsn’t this just CRL in reverse? Part of the point of cryptographically signing a cert is so you don’t have to do this if you trust the issuer.
Auli@lemmy.ca 4 hours ago
cron@feddit.org 4 hours ago
No, these are completely separate issues.
This is just one example why we have certificate transparency. Revocation wouldn’t be useful if it isn’t even known which certificates need revocation.
Source