Hacker News new | ask | show | jobs
by driftnet 89 days ago
All of the meaningful users are on GFE and will never encounter this. I can get a new DoD PKI certificate for a server in 10 minutes and everyone hitting the server will seamlessly validate it and have no problem logging in with their smart card. I'm not saying that this failure is excusable. But there is a lot of misinformation in the comments here from people who aren't familiar with the systems involved and how they work, and the real impact of this issue.