• Big Baby Thor@sopuli.xyz
    link
    fedilink
    English
    arrow-up
    1
    ·
    10 hours ago

    Yeah, this is the key. Distributing your own cert catalogues on a system level negates this issue. But then also that needs to be managed.

    But key signing is essential anyways and I’ve often thought the CA system could be used outside of the client to server signing process.