Hacker News new | ask | show | jobs
by Natanael_L 3897 days ago
Allowing multisignature models would at least drop the single point of failures, by being able to require verification from multiple CAs. In combination with certificate transparency and DNSSEC+DANE it would add much stronger security.