S. Bortzmeyer ✅ utilise mastodon.gougere.fr. Vous pouvez læ suivre et interagir si vous possédez un compte quelque part dans le "fediverse". Si ce n’est pas le cas, vous pouvez en créer un ici.

its called a *private* key for a reason

don't let the certificate authority generate it for you and/or give it to the certificate authority

the only thing you are supposed to give to the certificate authority is the certificate signature request (CSR) and they give you the certificate after the validation process

#infosec

S. Bortzmeyer ✅ @bortzmeyer

@staticsafe It should be noted that ads were framing this as an advantage (green checkmark) "no need to send a CSR"

· Web · 0 · 1

@staticsafe And, to play devil's advocate, there are probably some users that would manage their private keys even more badly than did.

Ping @aeris @Keltounet