It's hardly a single point of failure... it is the CA's job to ensure the high availability of
their responder.
But you highlight the big tradeoff--that between convenience and security. Currently we are
way, way too far into the realm of convenience, and we are paying for it with every data
breach.
Posted Jun 16, 2008 19:57 UTC (Mon) by Los__D (subscriber, #15263)
[Link]
True, but it still limits the points of attack significantly.
To many commercial sites, loss of availability is just as bad (or worse?) than phishers.
You are trading one kind of security for another, not convenience for security.