Hacker News new | ask | show | jobs
by andreasvc 4444 days ago
I see. Using the private key to revoke the certificate would be a denial of service attack, so requiring the CA for revocation avoids that, but admittedly it's not the first thing to worry about when a private key is compromised.