Would have to be with a very noticable warning. Other than that, it could use TOFU like Gemini.
@m0xee TIL that Firefox does that. Chromium as well?
@m0xee More websites in the software freedom focussed nerdosphere should use self-signed certs and rely on TOFU like Gemini does.
You don't need permission from a certificate authority then, much more independent.
You don't need permission from a certificate authority then, much more independent.
@m0xee Sure, let's encrypt gives certificates to almost everyone. But it's better to be actually self-sufficient if you ask me.
How much vetting does Let's Encrypt do anyway? AFAIK not much.
How much vetting does Let's Encrypt do anyway? AFAIK not much.
@m0xee Does the warning look the same as as an error?
Should be one colour (say, red) for errors and another (say, yellow) for self-signed. Sort of like the way Pixel bootloaders show green for official OS and yellow for unofficial but red for an error (IIRC).
Should be one colour (say, red) for errors and another (say, yellow) for self-signed. Sort of like the way Pixel bootloaders show green for official OS and yellow for unofficial but red for an error (IIRC).
@lnxw37b2 TOFU should be enough for many websites IMO
@feld Not what I mean. See https://social.fbxl.net/notice/Alo6RCar9qdLklpFA0 . I mean for public use.
@m0xee Okay, that's interesting. I tend to use Chromium though because I've heard it has better sandboxing.