Y
Hacker News
new
|
ask
|
show
|
jobs
by
jessaustin
3744 days ago
It's my understanding that pinning limits the damage of this sort of attack on those "big" sites.
1 comments
RKearney
3744 days ago
I think what jlgaddis was trying to say is that by getting certificates issued for the major browser vendors, you're much more likely to get them to pull this CA out of the trust store.
link
jlgaddis
3744 days ago
Yes, exactly. Thank you, I wasn't as clear as I could have been.
link
jessaustin
3744 days ago
Frankly, I could have thought a bit more deeply before responding. Your meaning seems clear to me now.
link