Hacker News new | ask | show | jobs
by ComputerGuru 1486 days ago
timestamps must come from a globally recognized signed source, like digicert or verisign.
1 comments

The CA could backdate the CRL’s revocation timestamp if they wanted, but it seems unlikely and presumably it’s not allowed.