▲ | einsteinx2 3 days ago | |
Repeating it doesn’t make it any more true. Cert providers publish their root certs, you pin those root certs, zero problems. | ||
▲ | nickf 3 days ago | parent | next [-] | |
Then the CA goes away, like Entrust. Huge problems. I speak (sadly) from experience. | ||
▲ | Plasmoid 3 days ago | parent | prev [-] | |
They rotate those often enough. |