6 ms·
We had certs that were only used and present on machines that were not vulnerable, and therefore did not replace or revoke them. Please don't do this.
by mygrant 12y ago
We had certs that were only used and present on machines that were not vulnerable, and therefore did not replace or revoke them. Please don't do this.
- nathanvanfleet 12y agoFurthermore servers that weren't even using OpenSSL or the particular version(s) that were susceptible. What is the actual percentage of servers that needed to react to this?
- 3pt14159 12y agoI dunno... Probably worth it from a netsec point of view.