Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It's opt-in by the site, but that's what public key pinning is: https://en.wikipedia.org/wiki/HTTP_Public_Key_Pinning


That's a bit different though, because you must pin an issuing key, not the actual cert.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: