DEV Community

Discussion on: Did You Know There Are Different Types of Certs for HTTPS?

Collapse
 
elmuerte profile image
Michiel Hendriks • Edited

The big question is, can you trust the CA. The simple answer is: you cannot.
A lot of high profile CAs have been kicked out the major browsers and OS provided root certificates. Prime cause: the CAs did not properly validate the certificates they gave out. This includes EV certificates.
HTTPS is more about preventing third parties monitoring and highjacking your connection than providing authenticity.