Reminder they webpki is still completely broken - now Google OCSP down http://clients1.google.com/ocsp Wonder if there is a targeted attack happening now
Also, as a publicly-trusted CA, Google is required to "maintain an online 24x7 Repository that application software can use to automatically check the current status of all unexpired Certificates issued by the CA" [Baseline Requirements]. They are currently in violation.
-
-
CAs have a history of operating unreliable OCSP responders, but people expect Google to do better, which is why this is being remarked upon.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.