Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
pronoiac
on May 14, 2014
|
parent
|
context
|
favorite
| on:
Many sites reusing Heartbleed-compromised private ...
Ugh. I think it would be better if revocation covered the public key instead of the serial number. (I'll ignore CRL bandwidth costs and the questionable usefulness of revocations.)
aastaneh
on May 15, 2014
[–]
YUP! I covered that exact subject (
http://aminastaneh.net/2014-04-23/misconceptions-about-mitig...
), but it didn't catch on in HN.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: