Hacker News new | past | comments | ask | show | jobs | submit login

Well, the browsers could disable non PFS ciphers by default. When a site doesn't match any PFS cipher list, show a pop-up with a way to add an exception for the site.

Much more graceful than a complete switch-over and doesn't require co-ordination from other vendors.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: