holochain / holochain/sbd

[spike] feature request: support trusting self-signed CA/key/key combinations

Open
#5 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Rust
Stars
2
Forks
2
PR merge metrics
No merged PRs in 30d

Description

> "not any better" seems like an overstatement to me. one security benefit to trust a specific self-signed certificate vs. disabling certificate checks altogether is that the former can be used to ensure the other side is a trusted node of the same organization where a common CA is adhered to.

i don't mind postponing it. i definitely want to eventually follow up on what seems to be a fundamental disagreement on a security aspect.

_Originally posted by @steveej in https://github.com/holochain/sbd/pull/2#discussion_r1578303963_

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.