Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

No, you can just install a self-signed unique cert for each machine.


Asking users to install a CA or cert is not a good or scalable solution.


Since when does a desktop application need to ask the user anything to install a cert programmatically? Enforced desktop sandboxing hasn't really taken off.


But then why do you need the DNS/hosts file hack? You can issue a self-signed cert to localhost/127.0.0.1, put it in the user’s trust store and call it a day.




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: