Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
lexman0
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
3 ms
·
1.
▲
by
lexman0
10y ago
This is my thinking. >> Not a hash of the contents, just the sub/external domains' key-ids. Yes, the main page would have to change if you updated the keys. Doesn't seem too onerous to me. Then that means each external
2.
▲
by
lexman0
10y ago
> Should you ever really trust kiosk machines? They could easily be setup with MITM eavesdropping software. I should have the choice. This doesn't even give me that. > Presumably there could be some sort of <meta> header th
3.
▲
by
lexman0
10y ago
I completely disagree with this. Public key pinning has some well known problems that make it very dangerous to implement at scale [1]. There are some very large problems that this introduces and does not solve: - How do kiosk machines now
4.
▲
by
lexman0
10y ago
While HPKP looks good, I really wouldn't implement it. Too dangerous for big sites in it's current form. Ivan puts it better than me: https://blog.qualys.com/ssllabs/2016/09/06/is-http-public-ke
5.
▲
by
lexman0
10y ago
Generally the cliche is about not implementing your own cryptographic algorithms. As long as they only implement existing algorithms and don't generate new ones, I don't think this applies.
6.
▲
by
lexman0
10y ago
"Although Mozilla’s sanctions are too severe..." These guys must be joking. Trust has been lost, the roots should be permanently revoked. If anything, I think Mozilla's actions are not severe enough. How likely is it that Moz
7.
▲
by
lexman0
10y ago
Oh no! Now where will I get my smug sense of satisfaction from?
8.
▲
by
lexman0
10y ago
True enough. But those who steal your account information and use it to pose as you don't follow the rules and regulations.
9.
▲
by
lexman0
10y ago
There are a lot of keyboard warriors in this thread. This guy puts forward a rational argument for big business. Unless you have extensive experience in this area, perhaps you shouldn't be so quick to judge "oh they are just spyin