Laurie: Improving SSL certificate security
Laurie: Improving SSL certificate security
Posted Apr 4, 2011 15:46 UTC (Mon) by gmaxwell (guest, #30048)Parent article: Laurie: Improving SSL certificate security
I wonder why some of these big internet companies don't run their own CA?
I mean— I don't consider google ultimately trustworthy but I think they're more trustworthy (and competent and probably experienced, and they certainly have more to lose) than most of the CAs browsers currently trust. Many of them operate many more domains than many of the currently trusted CAs have certs which have observed on the internet.
That plus some domain to CA binding would substantially reduce the number of really attractive targets for various attacks.
