Hacker News new | ask | show | jobs
by devrand 718 days ago
They’re saying that once you’ve sold certs to governments, distrusting that root will deny people access to government resources. They’re merely using “.gov” as a proxy for “some government”.

Also roots can be TLD constrained, typically to ccTLD(s).

1 comments

But they are very carefully not breaking anyone. If you have an entrust cert it will keep working, you can even renew it with them.