Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

This seems like it should be included in default root stores. I am out of my element here, but it would be cool if anyone can explain why or if I would need to manually add govt CAs.


If you allow the US gov CAs to be bundled with your browser, do you allow any country?

How would non-US citizens feel about having US CA's in their browser by default?


Seems like most people, US or not, should not trust DoD-signed stuff by default.


A lot of people have CAs controlled by various countries in their browsers by default. It was big news when CNNIC was dropped from Firefox and Chrome in 2015.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: