Something I want to happen: s2n (Amazon TLS logic) + mozilla::pkix (Firefox cert validation) + libcrypto (historically not the buggy part)
-
-
@BRIAN_____@sleevi_@FiloSottile What are costs of using AIA to chase down intermediates? (Rehash of "why-we-hate-OCSP"?) -
@randomoracle@sleevi_@FiloSottile Yes, same reasons as OCSP. I think when Mozilla starts rejecting SHA-1, we'll understand issues better.
End of conversation
New conversation -
-
-
@BRIAN_____@FiloSottile You're either constantly updating the intermediate store (ugh), you're doing AIA, or you assume server admins GAFThanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.