TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

How I exploited TLS-SNI-01 to issue Let's Encrypt certs using shared hosting

9 点作者 Titanous超过 7 年前

1 comment

fransr超过 7 年前
Hi, I&#x27;m the author of the article. As I wanted to point out, I&#x27;m not assuming this was something Let&#x27;s Encrypt did wrong, but rather assumptions in the specification which was not equivalent to the reality. I am really happy how this all was handled by Let&#x27;s Encrypt.<p>I&#x27;ve been thinking about this issue with domain validation for a long time. It is not a solved problem yet. There is no standard for it. There are clearly overlapping techniques from the 10 blessed being used in the wild (Google being one) but the adoption has been really slow.
评论 #16136578 未加载