Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Signing was designed for security purposes which is the only reason where certificate revocation has been used to date. There seems to be a lot of FUD here but without any actual hard examples.


But it prevents doing what you just said above :

> Developers can ask users for their admin password, sudo to root and largely do whatever they want including adding kernel extensions and drivers.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: