@Hyolobrika @Hyolobrika
Self-signed certs do not provide the capability to revoke them. Imagine that a malicious actor isn't just spoofing the site you trust with their own self-signed cert, but that the private key got compromised. With self-signed certs you have no way of telling users that the already trusted certificate is no longer valid, such a capability implies some sort of infrastructure and infrastructure implies hierarchy as someone has to operate it🤷
Embed Notice
HTML Code
Corresponding Notice
- Embed this notice
m0xEE (m0xee@social.librem.one)'s status on Monday, 09-Sep-2024 22:23:46 JSTm0xEE