Author Topic: 6 Day certificates  (Read 612 times)

Offline advent2016

Is this amazingly brilliant or stupid?

​https://www.schneier.com/blog/archives/2024/12/short-lived-certificates-coming-to-lets-encrypt.html

Offline lostandfound

Good idea IMO.

Quantum computing is as yet immature - announcements like Google's last week are intended to attract / justify continued funding for research - but when it does mature a successful brute force attack on an encryption key will be possible in a few minutes or less, or even in realtime.

Bad actors are already storing encrypted communications in the hope of being able to decrypt them when quantum computing makes that possible. Short lived encryption keys makes such approaches less viable. (Other protections are in development such as External Link/Members Only ).