[cabfpub] FW: Short lived OCSP signing certificate

Hill, Brad bhill at paypal-inc.com
Thu Sep 20 16:16:30 UTC 2012


> Do you think browsers should block access to sites that use expired certs (in the same way that they block access to sites that use revoked certs)?

For short-lived certificates, definitely.



More information about the Public mailing list