TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Ask HN: Books/guides/resources about running a public, web CA?

13 点作者 _1tan24 天前

2 条评论

cpach24 天前
I think the below resources are a good start.<p>This makes me curious: Do you have a specific goal in mind?<p><a href="https:&#x2F;&#x2F;github.com&#x2F;mozilla&#x2F;pkipolicy">https:&#x2F;&#x2F;github.com&#x2F;mozilla&#x2F;pkipolicy</a><p><a href="https:&#x2F;&#x2F;www.ccadb.org&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.ccadb.org&#x2F;</a><p><a href="https:&#x2F;&#x2F;cabforum.org&#x2F;" rel="nofollow">https:&#x2F;&#x2F;cabforum.org&#x2F;</a>
评论 #43744094 未加载
threesevenths24 天前
The difficult part of running a ca is convincing others you’re trustworthy. You need to have your business processes audited but an independent third party and then wait for your root to be adopted and deployed in browsers.<p>The value in exiting providers is their reach; versign for example is deployed in practically every trusted root bundle. When GoDaddy wanted to enter the market, they bought Starfield who already had a root which was widely trusted and crossed that with their own.<p>The reason people will pay for you to compute a number based on a number they give you and your super secret number is that people trust what you’re doing with your super secret number. And that trust takes time.
评论 #43743487 未加载
评论 #43745568 未加载