Hacker News new | past | comments | ask | show | jobs | submit login

This isn't about the cert issuance servers, but DNS servers. If you compromise DNS then just about any CA in the world will happily issue you a cert for the compromised domain, and nobody would even be able to blame them for that because they'd just be following the DNS validation process prescribed in the BRs.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: