|
|
|
|
|
by xyzzyz
5068 days ago
|
|
What's wrong with mandatory encryption? Some people say that it uses too much computational resources, for instance. Others complain that mandatory TLS increases latency by one additional RTT. Mandatory TLS is a biggest point of conflict at the IETF discussion about SPDY being the HTTP successor (at least from what I heard), though many sides disagree for evil reasons. Do you still use rsh to log in to your servers? Does this question add anything of value to the discussion? |
|
SSL also prevents doing MITM to serve malicious content to browsers to exploit browser or plugin vulnerabilities. Universal SSL would mean attackers would have to get you to visit their site, or a site that includes content that they control.