Hacker News new | ask | show | jobs
by iso8859-1 2084 days ago
It shouldn't. It is the fault of hacky protocols like HTTPS that conflate routing with identity. If we had DNSSEC and IPSEC from the beginning, it wouldn't have been necessary to do it on application level.
1 comments

The browser's same-origin-policy would still exist the same way without HTTPS.