Right now, Microsoft and the OEMs are the CAs, and there's no requirement that a system carry any root certificates other than Microsoft's. Imagine if your browser only came with Godaddy's certificate and you couldn't install any others.
Power management, mobile and firmware developer on Linux. Security developer at nvidia. Ex-biologist. Content here should not be interpreted as the opinion of my employer. Also on Mastodon and Bluesky.
Re: Is there any way for the end-user to load their own keys?
Date: 2011-09-24 01:59 pm (UTC)