• fartsparkles@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    16
    arrow-down
    1
    ·
    edit-2
    4 hours ago

    Thank you for the smug response however I did indeed read the article and going from 13 months to 10 days is not a trend but a complete rearchitecture of how certificates are managed.

    You have no idea how many orgs have to do this manually as their systems won’t enable it to be automated. Following a KBA once a year is fine for most (yet they still forget and websites break for a few days; this literally happened to NVD of all things a few weeks ago).

    This change is a 36x increase in effort with no consideration for those who can’t renew and apply certs programmatically / through automation.

    • 0x0@programming.dev
      link
      fedilink
      English
      arrow-up
      1
      ·
      28 minutes ago

      I did indeed read the article

      Smells like Apple knows something but can’t say anything.

      Then do explain your conspiracy theory. Sectigo could go for a money grab, otherwise… probably just forcing automation without thinking of impact, as usual.