Hacker News new | past | comments | ask | show | jobs | submit login

The local admin means "the user's employer's IT department", which, for the sake of a work laptop, they implicitly trust way more than Mozilla/Microsoft/Google/Apple etc who managed the public root stores.



I don't think a lot of people have the ability to prioritize employer with an IT department in the top percentile over other factors like location, pay and willingness to hire.

Whether CA/B is good or bad at what it does, it puts about a thousand times more effort into the question of whether to install a CA certificate in the browser than a company that just bought the cheapest solution to one of its problems and wants to install the corresponding vendor certs.

For example: https://docs.umbrella.com/deployment-umbrella/docs/install-c...

How many things could be wrong with that system and cause user's traffic to be compromised web wide? What community is checking transparency logs and threatening Cisco to revoke their authority to sell that product? What would that even mean?


That sounds like a problem for the IT department, not the end user?


Sure, their proactive attitude is why credit card fraud is referred to as "organization theft".




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: