Is any amateur or professional auditing done on the CA system? Something akin to amateur radio auditing?
Consumers and publishers take certificates and certs for granted. I see many broken certs, or brands using the wrong certs and domains for their services.
SSL/TLS has done well to prevent eavesdropping, but it hasn't done well to establish trust and identity.
replies(4):