Reply to post: Private keys are private

23,000 HTTPS certs will be axed in next 24 hours after private keys leak

robsonde

Private keys are private

With any PKI system if you need to move or copy the private key from the box it was created on, then you are likely doing something stupid.

It is fine to ask why they are being revoked and why the keys got emailed, but why did they have the private key!?!?!?

This company should never be trusted to be involved with any part of a PKI chain, they clearly do not understand the basics of PKI.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon