3 ms·
While a step in the right direction for EuroDNS, it's not really exciting at all. We need more completely free CAs.
by pushrax 12y ago
While a step in the right direction for EuroDNS, it's not really exciting at all. We need more completely free CAs.
- Animats 12y agoNo, we don't. The CA is supposed to verify the owner of the certificate and stand behind that with a financial guarantee. Otherwise, it's just security theater.
- eugeneionesco 12y agoI'm getting certificates for various websites with fake details for years now. The theater is there already, it would and we should not pay for it anyway.
- Animats 12y agoPlease post bad certs on "dev-security-policy@lists.mozilla.org". They can be revoked. Mozilla is introducing a Mozilla-controlled revocation list in Firefox 37. There's a lot going on to tighten up the CA world.
- cnst 12y agoThe whole CA system is already a security theatre.
- tomc1985 12y agoNot everyone wants verification. I just want encryption whilst minimizing payment to the SSL cartel.