Hacker News new | ask | show | jobs
by jessaustin 3744 days ago
It's my understanding that pinning limits the damage of this sort of attack on those "big" sites.
1 comments

I think what jlgaddis was trying to say is that by getting certificates issued for the major browser vendors, you're much more likely to get them to pull this CA out of the trust store.
Yes, exactly. Thank you, I wasn't as clear as I could have been.
Frankly, I could have thought a bit more deeply before responding. Your meaning seems clear to me now.