[Cryptography] New SSL/TLS certs to each live no longer than 47 days by 2029

Christian Huitema huitema at huitema.net
Fri Apr 18 17:43:58 EDT 2025


On 4/18/2025 1:03 PM, iang via cryptography wrote:

> All of this could have been bypassed if the browser/site system had
> simply negotiated a single-site self-signed certificate. But, oh, no, we
> can't encourage that because it will cause the chaos of ages, cute
> pupies will die and CAs won't earn their rent.

Isn't the "CA's rent" argument a tiny bit obsoleted by Let's Encrypt?

-- Christian Huitema



More information about the cryptography mailing list