Skip to content

Comment on STARTTLS Considered Harmfulparent

Comments

I think it's unpopular, because it is complex and it doesn't address privacy (between you and your ISP at least).

Centralized, hierarchical PKI is ok here, because it is better than what we have now (600 CAs for TLS, unsigned DNS, etc.) and nobody has a proposal for a fully decentralized system that ordinary people can understand (as demonstrated by GPG).

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.