CRL over HTTPS: is it really a bad practice?
On the Internet, I can find several statements done over the years claiming that serving a X.509 CRL over HTTPS is a bad practice because either a) it causes a chicken-and-egg problem when checking for the TLS certificate and b) it is simp… Continue reading CRL over HTTPS: is it really a bad practice?