Ranter
Join devRant
Do all the things like
++ or -- rants, post your own rants, comment on others' rants and build your customized dev avatar
Sign Up
Pipeless API
From the creators of devRant, Pipeless lets you power real-time personalized recommendations and activity feeds using a simple API
Learn More
Comments
-
Nooo. Don't do it. It's a *serious* security risk, and completely undermines the point of SSL/TLS in the first place.
-
gitlog57645yAnd they fucking keep blocking me for not using it from week to week
I just change the MAC address and they be like: -
Keep doing that, unless you really want them to be able to see all your supposedly encrypted traffic in the clear!
-
C0D4669445yThe only thing that goes into that trust store manually, is a cert YOU generated yourself for a server YOU own otherwise FUCK NO!
-
Aldar12045yI'd tell them to pack up their things and gtfo, this is not security, this is either their inability to purchase real ssl certs from existing trusted CAs, or they're trying to read all your ssl communications.
-
C0D4669445y@c3ypt1c offline dev servers have a hard time using let's encrypt.
So you create an OpenSSL cert instead. -
C0D4669445y@c3ypt1c that's why it's about the only time you accept a cert being added to the store.
Oh are you fucking kidding me?
Why the fuck do you need people to add you as a person who could view all my activities?
Why the fuck would I do so?
How does this help with network security
I might be wrong. In that case please correct me
rant