Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

See my comment above. There's a lot more to protecting a site from man-in-the-middle attacks than enabling HTTPS.

The most important things people need to know are the pros/cons of different types of certificates, how to keep certificates safe, and whether they have a vulnerable SSL library installed.

Again, it's not a binary.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: