Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> CABF started imposing restrictions on the public CA operators regarding the issuance of non-HTTPS certificates.

The restriction is on signing non web certificates with the same root/intermediate as is part of the WebPKI.

There's no rule (that I'm aware of?) that says the CAs can't have different signing roots for whatever use-case that are then trusted by people who need that use case.

 help



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: