Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I hate OS X's implementation. They need to allow third-party CA's.

I don't want to choose between what Apple allows developers to do and "fuck it let it run free and do whatever it likes". Nor do I want the global choice in System Preferences to be between developers that paid $100 to Apple this year and Wild West.



What would prevent malware authors from just signing with their own CA?


Users shouldn't install self-signed root certs unless they trust that root with access to all of their computer.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: