If your company does hosting - your company should provide TLS certs via Let's Encrypt automatically.
[0] Can we start dropping the SSL part now? Generally SSL v2/v3 is disabled so it is all over TLS anyway.
Correction: As part of the paid plan.
Why give for free sometimes you can charge money for.
Many kinds of static content need TLS, including protection from MITM and protection from eavesdroppers. Static doesn't mean "not sensitive". (Leaving aside the reasonable presumption today that all content is potentially sensitive.)
So really they are charging you if you need a custom domain and security (i.e. Something most businesses do need and most hobbies don't).
Seems a like a reasonable and fair way to segment their market to me.
I only just now noticed a rather serious typo there, making that sentence confusing. Should have said "the only reason TLS should be a paid feature", which fits with the rest of the sentence.
>Hosting a static free blog doesn't need TLS.
Completely wrong, although others explained why already.
It's the same certificate though. So can we start calling them X.509 certs which is more proper than SSL or TLS cert?