A second way to handle revocation is to maintain a list of "bad public-key certificates" at a central repository that is heavily protected from attack. Assuming that it is possible to protect the repository from attack, what are the disadvantages of this approach?