Global Feed Post Login
Replying to Avatar Aida

They don't have the private keys so they can't use it to monitor your users or decrypt the communication, they are also switching off OCSP stapling which could be theoretically used to monitor who is accessing what. The only issue is that they can issue/be forced to issue another certificate and honeypot your users... They will probably do that if forced by a judge, and if not them another cert authority probably would.

Much much much bigger risk is Cloudflare which has access to all the traffic, completely unencrypted. Their service is essentially Man-in-the-middle.

Avatar
Aida 10mo ago

nostr:nevent1qqsgdeundq6hg0kwjw53lsk876pxjfrz6ehwcs9l3s86gqsljtzy7cgpr3mhxue69uhkummnw3ezuumhd9ehxtt9de5kwmtp9e3kstczyrkfh46x24rt5pslth77w94y7g8n7flvc2x2fpc8whj7s57lzx5aqqcyqqqqqqgzeps2e

Reply to this note

Please Login to reply.

Discussion

No replies yet.