TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Expired SSL certificate

78 pointsby chtonabout 10 years ago

12 comments

thejoshabout 10 years ago
WTF, changing your PC date is not a solution! This will cause more issues.
评论 #9347077 未加载
评论 #9346724 未加载
评论 #9346588 未加载
评论 #9347211 未加载
jngabout 10 years ago
What is shocking is that they still haven&#x27;t found the way to properly fix it after 3 days.<p>I updated some SSL certificates last week (which even required contortions such as moving to a new issuer since some legacy software requires old-style SHA-1 signed ones which our current one doesn&#x27;t provide), and it didn&#x27;t take more than one (long) day of work.
评论 #9346906 未加载
评论 #9346598 未加载
billpgabout 10 years ago
I wonder if browsers should for (say) a week after a cert has expired, show an error so alarms are raised, but allow the dialog to be dismissed with an OK instead of all the &quot;Confirm Security Exception&quot; that would go on for a more serious cert rejection.
评论 #9346761 未加载
评论 #9346697 未加载
评论 #9346578 未加载
评论 #9346593 未加载
评论 #9346708 未加载
评论 #9347514 未加载
ntoshevabout 10 years ago
Our website monitoring service <a href="https:&#x2F;&#x2F;t1mr.com" rel="nofollow">https:&#x2F;&#x2F;t1mr.com</a> will warn you before your certificate expires (in addition to warning you when your site is down, and giving you reports of inbound and outbound dead links).
评论 #9347091 未加载
seqizzabout 10 years ago
Should we set it to 1st of April?
agarcia-denizabout 10 years ago
I can&#x27;t help but notice the motto:<p>Enjoy the simplicity
Karunamonabout 10 years ago
Rant mode:<p>If I understand right, getting a replacement cert doesn&#x27;t result in a change of the private key anyways.<p>It&#x27;s just magically, on the expiration date, your cert is somehow insecure and we must treat it as if YOU ARE IN DANGER!! - even though it&#x27;s still better than then plain HTTP that everyone uses every single goddamned day. Hell, a self signed cert is better than plain HTTP, yet for some backwards-ass reason we treat it as worse, despite the fact it makes you immune from passive eavesdropping and any injection attacks, which the average person is a lot more likely to run into than a self-signed cert being used by an attacker to MITM you.<p>CA&#x27;s are a scam and a racket. I can&#x27;t wait for Mozilla&#x27;s Let&#x27;s Encrypt[1] to come along and put them all out of business, hopefully before the last decade or so of training users to ignore the wolf-crying cert warnings comes to fruition.<p>Yeah, this is irresponsible on Manjaro&#x27;s part, they know the rules of the game, but the game is broken!<p>[1] <a href="http:&#x2F;&#x2F;letsencrypt.org" rel="nofollow">http:&#x2F;&#x2F;letsencrypt.org</a>
评论 #9347684 未加载
评论 #9347446 未加载
abofhabout 10 years ago
30 minutes, comodo reseller, seriously; You won&#x27;t get SHA256, but you won&#x27;t be asking your users to hurt themselves.
评论 #9348027 未加载
bitJerichoabout 10 years ago
Don&#x27;t pretty much all browsers let you accept using an expired certificate?
评论 #9346587 未加载
评论 #9346557 未加载
评论 #9346896 未加载
lauriswtfabout 10 years ago
Why is this on the frontpage?
评论 #9346614 未加载
评论 #9346638 未加载
HendrikRabout 10 years ago
This is really awesome. Why do certificates expire in the first place?
评论 #9346822 未加载
andygamblesabout 10 years ago
Awesome