On 08/22/2015 05:20 AM, Viktor Dukhovni wrote:
--- The certificate is a 1 0 1 and not a 3 0 1 It seems to suggest that I change the TLSA record to 3 0 1Or even better a "3 1 1".
Why is hash of SubjectPublicKeyInfo preferred over hash of the actual certificate?