Heartbleed - revoke or reuse SSL certificate?

Regarding the problem and resolving openSSL with a wrap, should I revoke OR reuse an existing SSL certificate?

+4
source share
2 answers

If you fixed the problem (updated openssl), you can re-enter the existing SSL certificate.

Re-keying effectively issues a new certificate, and your old certificate will be automatically revoked.

Another reason for revoking a certificate is to change certificate information (except keys). This information is publicly available in any case; it is included in the certificate, which is distributed to everyone who connects.

, , , , - , . .

+3

, , , . / . , , , ().

, PKI , . , OCSP .. (, , ...). CA (Comodo, DigiNotar, FGC/A...) : (

+7

Source: https://habr.com/ru/post/1535651/


All Articles