←back to thread

482 points sanqui | 1 comments | | HN request time: 0.265s | source
Show context
II2II ◴[] No.42286175[source]
Tangentially related:

The system is deeply flawed, which is something I realized fifteen years ago when I was put into a situation where I had to use online banking. (Had to being the nearest branch of any bank was an hour long flight away, though there was an ice road you could use in the winter.) One of my first questions of the bank was: who issued their certificate. They didn't have a clue what I was talking about. I suppose I could have pushed the question until I found someone who did know, but I also realized that a random person asking about security would be flagged as suspicious. The whole process was based upon blind trust. Not just trust in the browser vendors to limit themselves to reputable CA, but of the CAs themselves and their procedures/policies, and who knows what else.

replies(3): >>42286178 #>>42286351 #>>42287417 #
1. throwaway2037 ◴[] No.42286351[source]
First, you don't tell us the location. Are we talking about a CA in Syria or Canada? It makes a big difference. <sacasm>Second, yeah, I'm sure banking regulators say nothing to commercial banks about using a reputable CA.</sacasm>