top | item 11220767

(no title)

wangweij | 10 years ago

Expired and compromised are two different things. If compromised, it will be published in a CRL with a reason flag.

discuss

order

kevincox|10 years ago

The reason why certificates expire is because they will become easy to crack as computers get faster. So this would effectively be removing the expiry date. Now you can crack any old certificate and sign things claiming that you did it before the certificate expired.

markild|10 years ago

As someone above has already said.

To do this, you'd need to compromise or convince a trusted timestamping authority to sign your signing request with an old date.