Hacker News new | past | comments | ask | show | jobs | submit login

LE will mean a domain validated cert is free rather than costing 10-15 dollars, with the same proviso as other domain validated certs. That's a good thing.

But it won't change a lot of the things mentioned in the article: people will still need to configure servers, fix browser errors, researchers need a source for large-scale SSL scans, inspect packets, lookup domain contact info without junk results.

We're working on the configuring servers stuff BTW: we landed patches in node.js to ensure their TLS implementation passes SSL Labs out of the box and I'm hoping to do the same for nginx in future.




Letsencrypt offers to configure common webservers automatically. If a lot of people take up the offer, there could soon be much fewer servers with grossly insecure TLS configurations.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: