Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Correct, but, even if not explicitly said, the cached entries should be associated to the certificate's fingerprint and immediately discarded once the certificate expires or is changed.


Certificates often change for legitimate reasons, e.g. Let's Encrypt certificates which must be changed every 3 months.


That would be ok.




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: