Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I agree that setting up a self-signed CA is hard, and harder to keep going.

However DNS challenge allow for you to map an internal address to an IP number. The only real information that leaks is the subnet address of my LAN. And given the choice of that or unencrypted traffic I'll take that all day long.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: