Hacker News new | ask | show | jobs
by bawolff 134 days ago
> That's the same problem we have with server certs, and the general solution seems to be "shorter cert lifetimes".

No it isn't, and that's not the reason why cert lifetimes are getting smaller.

Cert lifetimes being smaller is to combat certs being stolen, not man in the middle attacks.

1 comments

Not really, no. There are a number of reasons for cert lifetimes being made shorter.