4 ms·
This is partly due to the big red warnings you get with self-signed certificates. Yes, it would certainly help, but to the user seeing a crossed-out https is wo
by 0942v8653 12y ago
This is partly due to the big red warnings you get with self-signed certificates. Yes, it would certainly help, but to the user seeing a crossed-out https is worse than a simple http. And the user's perception matters much more than security does to these people.
- troymc 12y ago@tootie didn't say anything about the certificates being self-signed. Later this year, the new Let's Encrypt CA will make it free and easy to get certificates.[1] Moreover, it's my understanding that the default with HTTP/2 is for connections to be secure. [1] https://www.eff.org/deeplinks/2014/11/certificate-authority-encrypt-entire-web https://www.eff.org/deeplinks/2014/11/certificate-authority-...
- jethro_tell 12y agoBut then you'd have to update the certs, which an appliance manufacturer isn't going to do.
- ryandrake 12y agoWhy not? If they're going to go to all the trouble to "Internet enable" a refrigerator, surely they can include yearly certificate changes as part of their maintenance plan.
- jethro_tell 12y agoThey really should, but I can't even get a cert update on my little home router, do you think a fridge maker is going to do that? Probably once it's out the door, they will pull the one programmer that writes the app and put him on then next fridge or the oven. It's very difficult to see an appliance manufacturer going back to update.
- tootie 12y agoOnly if the appliance is serving requests, not if it's requesting. For a piece of hardware like a carwash that is running servers, the manufacture should be maintaining that software routinely anyway.
- 0942v8653 12y agoMy sound system runs an HTTP server.