Hacker News new | ask | show | jobs
by microcolonel 2176 days ago
Then there's the whole issue of putting domain names/common names inside the certificates, but relying on external verification; rather than just having the DNS NICs directly sign for domains they have obvious authority over.