Hacker News new | ask | show | jobs
by DoubleMalt 4450 days ago
This is actually not enough as you cannot be sure that certificates generated after that have never been used on a server with a vulnerable OpenSSL implementation.
1 comments

You can't ever guarantee that for any certificate signed by any CA.