﻿id	summary	reporter	owner	description	type	status	priority	milestone	component	version	resolution	keywords	cc	launchpad_bug
997	The webapi/WUI should have https enabled by default	jsgf	nobody	"In the spirit of making the defaults secure, the web interface should have https enabled by default.  Plain http is only secure if you assume users will always interact with the server over a secure network, but practice shows that people often connect to remote servers.

This implies that Tahoe should ship with some certificates.  These can be any dummy self-signed certs, since we just need secure key negotiation."	defect	new	major	undecided	code-frontend-web	1.6.0		confidentiality wui webapi capleak		
