Skip to content

Comment on We need a “/heartbleed.txt” standard, and we need it ASAP

Comments

A useful alternative could be for password managers to periodically (and on creation) check ssl certs, store them, and then check for revocation (periodically or on demand). That would be general, useful (I guess) and it would not require any new standard.

jikOP

That requires keeping a huge amount of state and doing a lot more complicated programming then just checking a few fields in a YAML file.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.