Hacker News new | ask | show | jobs
by tobbez 4069 days ago
...unless you have somehow acquired a CA's private keys, or are in control of the clients' certificate stores.
1 comments

The latter of which is very common in corporate environments where employee's machines are provisioned by the IT department and contain the company's private CA (which is useful for non-nefarious purposes such as signing certificates for internal services).