https everywhere

Steven Schveighoffer schveiguy at yahoo.com
Fri Feb 21 13:07:29 PST 2014


On Fri, 21 Feb 2014 15:55:02 -0500, deadalnix <deadalnix at gmail.com> wrote:

> On Friday, 21 February 2014 at 20:35:12 UTC, Dicebot wrote:
>> On Friday, 21 February 2014 at 20:34:12 UTC, Walter Bright wrote:
>>> dlang.org and dconf.org now support https,
>>>
>>> https://dlang.org
>>> https://dconf.org
>>>
>>> Note that this is a self-signed certificate, and so when you first  
>>> access it you'll get a dire warning from your browser.
>>
>> Why can't free startssl certificate be used?
>
> The whole certification principle is about how much you trust who sign  
> the certificate. I trust digital mas much more than startssl.

The problem is not who deadalnix trusts, it's who the browser trusts.

I agree with others here, it should not be self-signed. It should be  
either unencrypted, or a trusted CA certificate.

-Steve


More information about the Digitalmars-d-announce mailing list