Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It sounds like the internet is broken Without CRL/OSCP we cannot truly trust that we are securely communicating.

Something has to give. We need to abolish SSL/TLS and migrate to something that isn't broken by design



> the internet is broken

It's not the Internet, just the CA system. There are better systems for handling trust out there, for example, people have been signing each other's PGP keys at key signing parties for decades.


> It's not the Internet, just the CA system.

Ok, so it is just the portion of the internet that involves purchasing things with credit cards and requiring passwords to access sites. The rest of the internet is just fine.

Great. I thought for a moment that the commercial basis of the internet might be in danger. Now to determine what percentage of the internet is not dependent on the CA system.....




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: