Hacker News new | ask | show | jobs
by akira2501 1082 days ago
the acme protocol handles this. is there space for an 'email-01' or similar mechanism for client certificate verification?
1 comments

Why are we desparate to jam X509 into every hole, regardless of whether or not it's a good idea?

mTLS for most cases is not a good idea. For the masses, it's certainly not a good idea.