Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I was looking at my certificate chain and I noticed that the root certificate uses SHA1. Any ideas if this will affect the root certificate? I'm using AddTrust External CA Root.

Right now in Chrome 41, the https:// portion of the URL is green.



Note: SHA-1-based signatures for trusted root certificates are not a problem because TLS clients trust them by their identity, rather than by the signature of their hash.

http://googleonlinesecurity.blogspot.be/2014/09/gradually-su...


Root certificates are not affected.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: