Hacker News new | ask | show | jobs
by JoshTriplett 3470 days ago
> Imagine if we were still using certificates signed with DES and MD5 hashes because they were available perpetually.

We don't rely on expiration or revocation for that; we rely on clients and servers refusing to use insecure algorithms.