|
|
|
|
|
by ayende
2106 days ago
|
|
The reason the old interface was deprecated was that a security hole was found in the protocol.
That is one of the few cases where it is reasonable to break backward compatability in this manner. Especially when dealing with certificates, where the security is one of the top reasons to want to go there. |
|
Is there any supporting evidence for that because the only thing I have been able to find so far is that it was simply superseded by a newer version, mostly to support wildcard certs. What holes there were in V1 were closed within a day or two at most.