Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Author appears to not be aware of the upcoming free SSL certificate service from Mozilla, the EFF and more - https://letsencrypt.org/


Did you actually read the article? I've dedicated an entire section of the article to Let's Encrypt.


The author mentions letsencrypt, but their description of why letsencrypt is not a solution makes me think they have a less than complete understanding of modern SSL.

Also the configuration issue with regard to not supporting wildcard certs is not a problem IMO. If you're big enough to require multiple subdomains the fact that you're managing multiple certificates instead of one does not need to be a logistical issue. Automation is our friend.


Parent appears to not have actually read the article. FFS, there's a bold heading halfway down: "Let's Encrypt is not a complete solution either"


I'd be a lot more willing to consider letsencrypt.org as a valid support for changing the fundamental requirements for communication on the rest of the web when it was a proven service whose practicality (and any pitfalls) for real users in a wide range of cases including those that weren't the most common was well-established, rather than an upcoming one.


Maybe Sven edited the article after the fact, but there is a section on Let's Encrypt




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: