|
|
|
|
|
by isostatic
2652 days ago
|
|
Once kicked out (due to certificate transparency or due to finding out ala diginotar) the next browser update will remove them, and the CT people won’t deal with them. Doesn't Chrome now require CT? Not great, but doesn’t rely on crls or other broken systems. > It's generally hard to MITM an entire nation's traffic, for reasons of computational overhead Isn't that what Iran did with DigiNotar? |
|