[Noisebridge-discuss] TPM

Al Billings albill at openbuddha.com
Wed Jul 22 21:19:51 UTC 2009


On Jul 22, 2009, at 2:10 PM, Rachel McConnell wrote:

> Rodney Thayer wrote:
>> Al Billings wrote:
>>> On Jul 22, 2009, at 11:31 AM, Rodney Thayer wrote:
>>>
>>>> CACert is questionable too.  why not just spin your own root and  
>>>> put
>>>> it on an offline box?
>>> Because you are going to get the same SSL warnings and alert from
>>> software if you use any root that isn't in the shipped store with  
>>> the
>>> software. This is certainly true for Firefox.
>>>
>>> Al
>>
>> #include <standard-noisbridge-rant.h>
>>
>> ...and therefor you have to deploy the root to Noisebridge users...  
>> is
>> that a problem/
>
> It makes us look less attractive to potential landlords (and others we
> may or may not care about).  "They're computer geeks, why is their  
> site
> doing that weird scary thing?"

This is also true.

Is there a reason not to have a cert for our site from one of the  
accepted (and existing) certificate authorities, especially since it  
is public facing?

Al




More information about the Noisebridge-discuss mailing list