|
|
|
|
|
by matthewaveryusa
1482 days ago
|
|
It’s solving a very real problem for enterprises. They want to run local agents that serve up content with a cert chained to an installed trusted corp ca. In general localhost is a pain to reason about security-wise —- the best approach is to simply kill it (despite my personal nostalgic love for it.) Use a proxy instead and forget it exists — enterprise is now the owner of that domain. |
|
Plus, what’s the benefit of encrypting on a loopback connection? Who’s intercepting?