3 ms·
A great time to raise these questions. What reason have we ever had to trust any of these "authorities" (let alone the deteriorating state of the field, e.g. th
by teeja 13y ago
A great time to raise these questions. What reason have we ever had to trust any of these "authorities" (let alone the deteriorating state of the field, e.g. the recent Turkish fiasco)? Without a firm answer for that question, SSL is reduced to magic thinking.
- kaoD 13y agoBecause there's no alternative. Either you trust the authorities or live in a constant fear that the other parties' certificates are hacker-crafted.
- ashkav 13y agoI'm no expert at cryptography and all that stuff, but i find the model of the httpsy link quite interesting. You include the identity of the site you're linking to in an extended httpsy address, so that you can be sure that you land on the site you linked to. The beauty of the Idea is that it democratizes the trust domain. It creates a web where ordinary people decide whom they trust simply by putting down httpsy-Links.