|
|
|
|
|
by pilif
1251 days ago
|
|
DNS can be MitMd. crt.sh would be in a position to get all your browsing history. The local thing would work, but of course only for local hosts. It would not be worse than using plain http and my personal opinion is that visiting a plain http site should have the same UX as visiting a self-signed one. |
|
It would also specifically allow non-identity locally issued certs for .local, .lan, .hobby etc...