←back to thread

489 points gslin | 1 comments | | HN request time: 0.332s | source
Show context
selectnull ◴[] No.42191822[source]
What I'm most thankful is the ACME protocol.

Does anyone remember how we renewed certificates before LE? Yeah, private keys were being sent via email as zip attachments. That was a security charade. And as far as I know, it was a norm among CAs (I remember working with several).

Thank you Let's Encrypt.

replies(6): >>42191895 #>>42191915 #>>42191936 #>>42192138 #>>42192258 #>>42194019 #
1. nailer ◴[] No.42194019[source]
Regardless of whether you use LE or not, you would not ever send a private key in a zip file rather a public key.