Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Should certificate authorities be checking that any new key they sign doesn't have a common factor in common with any other key they've signed?

It would have discovered a few problems much earlier, but it conceivably leaks information when your CSR gets rejected.



It would only "leak" information which is already public.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: