|
|
|
|
|
by entire-name
2171 days ago
|
|
At that point, wouldn't the approach be to defend from the client side? Namely, we can instruct the client to not trust any content sign by such-and-such keys. This can be done by pushing out a certificate revocation, etc. |
|