|
|
|
|
|
by jeroenhd
1255 days ago
|
|
Most big apps bundle their own certificates/certificate authorities for cert pinning already. They can switch to their own CA system any time. Sadly, DANE has failed because DNSSEC has failed on the American market. Hopefully we'll find an alternative for these protocols in the future. |
|