Hacker News new | ask | show | jobs
by cowchase 4727 days ago
It sounds a bit as if you were worried your CA could hand out your key to the NSA. That's not how SSL works. CAs only certify the validity of your public key. Your private key never leaves your machine. If you are looking for a vendor that supports your cause, take a look at Namecheap: https://www.namecheap.com/ssl-certificates
1 comments

Yes, Namecheap has been socially responsible and somewhat of a rebel. They're one of the few big name companies that joined the Stop Watching Us [1] initiative. None of the PRISM companies have, as far as I know.

https://stopwatching.us/