Hacker News new | ask | show | jobs
by user5994461 3352 days ago
You don't seem to understand. Read again, I gave many scenarios where a certificate will be invalid, that will block all access to your site if HSTS is enabled.
1 comments

I read your posts. Your examples apply to HKPK (key pinning), not HSTS (enforcing TLS only).
My examples are for HSTS. I gave examples where a certificates is invalid. TLS fails when the certificate is invalid and HSTS blocks access to your site.