Hacker News new | ask | show | jobs
by losvedir 3933 days ago
Yeah, verifying that "www.barclays.co.uk" is the correct URL for Barclays Bank PLC is what EV is for.

The other important role of a certificate is verifying that the server you're connected to is the correct one for the URL in the address bar. I may not know or care who "Hacker News" is supposed to belong to, but I do care that I'm connecting to the legit news.ycombinator.com, the same one I connected to yesterday, and that I'm not being Man-in-the-Middle'd.

The latter is what letsencrypt is for.

    |browser|- letsencrypt verifies -|server|- EV verifies -|organization|