[Cryptography] New SSL/TLS certs to each live no longer than 47 days by 2029

Kent Borg kentborg at borg.org
Wed Apr 23 10:10:01 EDT 2025


On 4/22/25 8:32 PM, Paul Wouters wrote:
> All the CAbal exists only because of browsers refusing to do DNSSEC,
> even now they have a clean and secure path via DoH anyways.... 

What are the downsides to DNSSEC? Both honest and real, and imagined or 
excuses.

-kb




More information about the cryptography mailing list