Re: HTTP is just fine
Kevin Chadwick <[email protected]>
| Newsgroups | gmane.comp.mozilla.security |
|---|---|
| Message-ID | <[email protected]> |
> > And yet mozilla have reduced the control over javascript in their > > browser without about:config!!! which is the real issue and nothing to > > do with https. Also, a VPN solution would be the right solution for > > insecure networks. That makes it a poor excuse for justifying https > > everywhere.. > > the ship called "web without javascript" have sailed long ago, reached > its destination, was decommissioned, turned into tourist attraction, > scrapped, turned into toothpicks and finally thrown into trash right and that's why mozilla advertised the noscript extension along with dr web recently. PHP with suhosin and cgis but especially CSS 3 and html5 are quite capable these days. In fact I believe js free may be growing momentum. I certainly see more high profile sites these days that are very functional and yet can be javascript free such as tesco.com for accessibility reasons, bank sites, gov.uk. Amazon My own sites! I'll grant you that ebay and paypal are going backwards and paypal has had security issues recently too, coincidence or a sign of struggling technically?! -- KISSIS - Keep It Simple So It's Securable