Hacker News new | ask | show | jobs
by reaperhulk 2806 days ago
Yes, this restriction applies only to public CAs. The purpose is to prevent someone from getting, for example, a 192.168.1.1 cert and then using it on another network in a mitm attack.