'Aaron Gable' via [email protected] <[email protected]> writes:
>This is contrary to the current industry consensus. Just doing a sanity check here, key continuity has been a core feature of SSH security for close to thirty years, and was finally adopted for PKI use as well after a string of highly-public CA failures. Are you saying that the consensus among all? most? CAs is that actively breaking key continuity/ pinning is a good idea, or is this just a Let's Encrypt thing? Just trying to get an idea of how widespread this is. Peter. -- You received this message because you are subscribed to the Google Groups "[email protected]" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To view this discussion on the web visit https://groups.google.com/a/mozilla.org/d/msgid/dev-security-policy/SY4PR01MB62516AF55C8D8D82EC8A7083EE84A%40SY4PR01MB6251.ausprd01.prod.outlook.com.
