Re: Mailing List Web Interface
Gary Kramlich <[email protected]> Fri, 14 Jun 2019 05:57:24 -0500
| Newsgroups | gmane.comp.gnome.gaim.devel |
|---|---|
| Message-ID | <CAGA0GwAFmY0rmQQneiF0+r6w8be3JUTAQo9BCbNwish3vLREgA@mail.gmail.com> |
--===============6427465597693168498== Content-Type: multipart/alternative; boundary="000000000000a83749058b468331" --000000000000a83749058b468331 Content-Type: text/plain; charset="UTF-8" Yep, sorry. I read about it quickly and set it up while live streaming so I glossed over that bit. :-/ On Fri, Jun 14, 2019, 03:35 Pas <[email protected]> wrote: > Hello, > > Excuse me for the noise. It's always hard to nitpick about IT sec, but > ... well, that's security. > > > Finally I add DNS CAA records to both pidgin.im and imfreedom.org so > > that browsers that check it will now verify that we only allow tls > > certificates to be issued for those domains from lets encrypt. > > Browsers are very firmly discouraged to use CAA, it's only for CAs. > > https://community.letsencrypt.org/t/caa-browser-check/31786/8 > > > regards, > Pas > --000000000000a83749058b468331 Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable <div dir=3D"auto">Yep, sorry. I read about it quickly and set it up while l= ive streaming so I glossed over that bit. :-/</div><br><div class=3D"gmail_= quote"><div dir=3D"ltr" class=3D"gmail_attr">On Fri, Jun 14, 2019, 03:35 Pa= s <<a href=3D"mailto:[email protected]">[email protected]</a>> wrote:<br></div><b= lockquote class=3D"gmail_quote" style=3D"margin:0 0 0 .8ex;border-left:1px = #ccc solid;padding-left:1ex">Hello,<br> <br> Excuse me for the noise. It's always hard to nitpick about IT sec, but<= br> ... well, that's security.<br> <br> > Finally I add DNS CAA records to both <a href=3D"http://pidgin.im" rel= =3D"noreferrer noreferrer" target=3D"_blank">pidgin.im</a> and <a href=3D"h= ttp://imfreedom.org" rel=3D"noreferrer noreferrer" target=3D"_blank">imfree= dom.org</a> so<br> > that browsers that check it will now verify that we only allow tls<br> > certificates to be issued for those domains from lets encrypt.<br> <br> Browsers are very firmly discouraged to use CAA, it's only for CAs.<br> <br> <a href=3D"https://community.letsencrypt.org/t/caa-browser-check/31786/8" r= el=3D"noreferrer noreferrer" target=3D"_blank">https://community.letsencryp= t.org/t/caa-browser-check/31786/8</a><br> <br> <br> regards,<br> Pas<br> </blockquote></div> --000000000000a83749058b468331-- --===============6427465597693168498== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: inline X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX18KRGV2ZWwgbWFp bGluZyBsaXN0CkRldmVsQHBpZGdpbi5pbQpodHRwczovL2xpc3RzLnBpZGdpbi5pbS9saXN0aW5m by9kZXZlbA== --===============6427465597693168498==--