http subversion URLs should be discontinued in favor of https URLs

Yuri yuri at rawbw.com
Tue Dec 5 23:07:03 UTC 2017


On 12/05/17 14:43, Poul-Henning Kamp wrote:
> The vastly oversold "security" of HTTPS is entirely borrowed from
> a confederation of root-CA's which no non-deluded person can ever
> seriously trust.


Your argument goes like this: https potentially suffers from some 
vulnerabilities too, so we better dismiss it and go with the weakest 
solution. Sorry, but this doesn't make any sense.


Yuri



More information about the freebsd-security mailing list