Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Probably not. And, when it comes to crypto compatibility, there really is no such thing as "normal". It's all still early days.


Just noticed all four certs in the chain on https://www.microsoft.com use SHA1. The root cert, "Baltimore CyberTrust Root", expires in 2025. Will root CAs also have to be replaced by 2016?

The relative urgency around this cutoff comes off as panick-y to me. They never seemed to bother updating roots or add SNI support for older, still supported OSes like WinXP.


Windows XP is officially dead in 144 days, so they're likely unconcerned on that front.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: