|
|
|
|
|
by mannyv
1 day ago
|
|
Certificate expiry is less severe than an untrusted issuer or a host mismatch. The former is most likely an administrative error (ie: someone forgot to renew, or the auto-renew is failing). The latter is more likely to be an MTM attack. I'm not sure how you would use an expired cert as an attack vector. By loading in an old cert into an expired domain so you could spoof older content? |
|
Expiry is a pretty fundamental part of the security model of certificates.