[tahoe-dev] SSL samurai attack migration ninjas, film at 11

Shawn Willden shawn at willden.org
Sun Oct 30 00:59:24 UTC 2011


On Sat, Oct 29, 2011 at 7:55 AM, James A. Donald <jamesd at echeque.com> wrote:

> On 2011-10-29 9:54 PM, Shawn Willden wrote:
>
>> Certainly a new, self-signed SSL cert is worthless, in that it doesn't
>> give
>> you any greater confidence in the site you're visiting than if it used
>> plain
>> HTTP.
>>
>
> But a new self signed cert rapidly ceases to be new, therefore rapidly
> ceases to be worthless.


Well, it would if browsers didn't frighten everyone away from accepting
them.


-- 
Shawn
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://tahoe-lafs.org/pipermail/tahoe-dev/attachments/20111029/f742a6e0/attachment.html>


More information about the tahoe-dev mailing list