Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Oops.

This is a wildcard cert for .docker.io.

In addition, Chromium tells me that "Your connection to docker.io is encrypted with obsolete cryptography" (although that may just be a result of the expired certificate?).

How did no one responsible for this get notified prior to the certificate expiring? Presumably, that's something they (Docker) will shortly be adding to their monitoring system.

ETA: I'm no expert but after looking at the Qualys SSL Labs report [0], it would appear that the warning is simply due to the certificate having expired.

[0]: https://www.ssllabs.com/ssltest/analyze.html?d=docker.io&lat...



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: