Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

According to this article macOS does do a network request to check the notarization ticket:

https://eclecticlight.co/2023/03/09/how-does-ventura-check-a...

They also check the developer certificate in the OCSP stage.

Both of these are mechanisms where apple can effectively lock out developers from having a smooth install experience for their software at their discretion.



Isn’t this how certificate revocation flows work?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: