IT admins, get ready to grumble

    • P03 Locke@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      11
      ·
      1 month ago

      This will keep getting shorter until it turns into a calculus problem.

      You won’t even get a certificate, just a token from some SSL token warehouse. Why should I trust it? Because some random company says so!

      • Admiral Patrick@dubvee.org
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 month ago

        Lol, wouldn’t put it past them. Like TLS session keys we have now, but every session key has to be requested from the SSL token warehouse.

    • Possibly linux@lemmy.zip
      link
      fedilink
      English
      arrow-up
      9
      ·
      edit-2
      1 month ago

      There are lots of companies and vendors that don’t automate cert renewal. They are all going to be forced into automation with this change.

      The concern is that a compromised device could leak a cert that is then used for attacks.