Yup. If your primary goal was fast, efficient certificate revocation, then having certs that still take 90 days to expire rather than 2 years is not the solution you'd come up with.
Not by definition. The main issue is mass revocation events: the CRL is still going to initially contain up to 100% of certs currently active, and the number of active certs won't meaningfully change.
It'll rapidly shrink over time as certs expire, but you still have to deal with that initial massive set.
https://hacks.mozilla.org/2025/08/crlite-fast-private-and-co...