That is in no way different than the current situation. If all of the dozens of trusted certificate authorities the world over has decided that they shouldn't provide certs for company X, you should probably be looking to company X for the problem, rather than the authorities.
In any case, users have always had the option of modifying the trust infrastructure or even ignoring it entirely.
Comments
That is in no way different than the current situation. If all of the dozens of trusted certificate authorities the world over has decided that they shouldn't provide certs for company X, you should probably be looking to company X for the problem, rather than the authorities.
In any case, users have always had the option of modifying the trust infrastructure or even ignoring it entirely.
Let me rephrase. What if every cert authority might do it to some company (different companies for different cert authorities)
How would you even know if they did?