TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Show HN: A tool for creating custom TLS CA bundles

20 点作者 Lukasa超过 10 年前

4 条评论

0x0超过 10 年前
OK, but you could also just run "dpkg-reconfigure ca-certificates" or use Keychain Access to mark undesirable authorities "Do Not Trust".
ris超过 10 年前
&quot;If you still don&#x27;t trust us, we encourage you to download the source, build it yourself and run the service on your own hardware.&quot;<p>Or you could just download debian&#x27;s ca-certificates package and cat together all the .crt files you choose into a .pem. Much quicker &amp; simpler.
timmclean超过 10 年前
Trust exactly who you want to trust... as you download certificates from a random person&#x27;s server.<p>But seriously, great idea, but wouldn&#x27;t this be better as a command-line tool installable via a package manager? At least then it could be audited.
评论 #8279592 未加载
xvilka超过 10 年前
World need wider adoption of DANE instead.