|
|
|
|
|
by bawolff
1598 days ago
|
|
I would also add it doesn't really make much sense. Could the nsa/fbi/cia/etc force lets encrypt to mis-issue a certificate for some domain at the point of a gun? Sure. Certificate gets logged in cert transparency logs (required for browser to trust it). If someone notices everyone knows, huge outcry. Sure they could do it once, but how would they do it a second time? It would have to be a very high value target to be worth it. |
|