Live data from Hacker News

Fina Root CA signs certificates for 1.1.1.1

crt.sh

1–6 of 6 posts

Re: Fina Root CA signs certificates for 1.1.1.1

#3
This CA is trusted only by Microsoft. I and others have reported problematic CAs to Microsoft in the past (though this particular one wasn't on my radar) only for our concerns to be ignored. Mozilla, Chrome, and Apple have actual standards and don't trust CAs like this.

Re: Fina Root CA signs certificates for 1.1.1.1

#6
post #3

This CA is trusted only by Microsoft. I and others have reported problematic CAs to Microsoft in the past (though this particular one wasn't on my radar) only for our concerns to be ignored. Mozilla, Chrome, and Apple have actual standards and don't trust CAs like this.

It's also trusted as an EU Trust Service Provider. https://eidas.ec.europa.eu/efda/trust-services/browse/eidas/... That's basically QWACS. Ah, of course you mentioned it in the other thread!