Re: HTTP is just fine (was: Marking HTTP As Non-Secure)
Kevin Chadwick <[email protected]>
| Newsgroups | gmane.comp.mozilla.security |
|---|---|
| Message-ID | <[email protected]> |
> You're missing the point of HTTPS. It's not just about "encryption". > HTTPS guarantees privacy *AND* integrity. You're arguing as if the > second one wasn't an issue. It is. Hmmm, stop talking shit, Integrity, so it getting there at all is included in that which is far less likely with a SSL enabled server which is far easier to amplify DDOS against? On top of that DDOS is far more likely due to it's constant use in the wild than targetted info poisoning especially when the user could be at anyone's house!! MITM (ignoring shitty ISPS) is far less likely than you think too! -- KISSIS - Keep It Simple So It's Securable