Hacker News new | ask | show | jobs
by aidenn0 4450 days ago
I use a StartCom certificate, but it has never been used with OpenSSL, so I'm fine.

It costs money to maintain a CRL.

Maybe they could revoke their intermediate certificate and reissue certificates to everyone. That would take time to coordinate, and every month that goes by 1/12 of the bad certs expire anyway.

1 comments

It might, but certainly not $25 per instance. That feels a lot like gouging.