Y
Hacker News
new
|
ask
|
show
|
jobs
by
iancarroll
4452 days ago
How are they worthless?
2 comments
msherry
4452 days ago
They're worthless because clearly no one is using them. They may theoretically be useful, but it doesn't matter if they're never put into practice.
link
iancarroll
4452 days ago
Do you mean nobody on the CA side or the end user side? CA's suspend certificates all the time - instant e the scam site had theirs pulled a few weeks ago...
link
nullc
4452 days ago
Beyond being seldom used, they also leak usage information.
link
dfc
4452 days ago
If you are leaking usage information with ocsp/crl checks you are also spewing out information via DNS requests.
link