Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Let's Encrypt's ACME protocol has been adopted by ZeroSSL, Buypass and ssl.com to offer free 90-day certificates.


Free CAs are prone to fraud and abuse because they have no innate funding model and there's no barrier to anyone issuing a cert to any particular domain while attempting to circumvent domain authentication.


> there's no barrier to anyone issuing a cert to any particular domain while attempting to circumvent domain authentication.

Let's Encrypt has a much better track record at preventing people from issuing certs for random domains compared to many other commercial entities.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: