The problem might be that this doesn't even need investigation. It's too boring. Everything is said in the bill. They just lack technical literacy to realize the implication.
61 karma · joined May 20, 2011
The problem might be that this doesn't even need investigation. It's too boring. Everything is said in the bill. They just lack technical literacy to realize the implication.
It's actually quite defensible from their perspective. They justify it with reason they decided wire tapping was reasonable for the past decades. It's just that they don't understand the risk and implication.
Apple TV, Amazon Echo/eero, Google Nest are all Thread/Matter hub.
Ikea just started to selling cheap Thread devices. It will soon be mainstream to have IPv6 devices in your home network.
Previously, most CA had no programmatic way to order certificate, it was all done manually.
As far as I know, the only providers with that would let you automate certificate provisioning at the time where Comodo, GlobalSign and Digicert.
They all had their own quirky API. Just to give you an idea, we ended up selecting GlobalSign at Shopify a few years before LetsEncrypt, and it was this SOAP nightmare: https://www.globalsign.com/en/repository/GlobalSign_Client_A...
At first none of them were warm at the idea of providing an ACME endpoint. I'm assuming part of it is the cost of implementing it but they probably liked the stickiness of their custom APIs too tied to million dollars contracts.
Nowadays they all implement ACME. At some point, they where effectively forced to implement it to acquire new customers and keep their existing base around because nobody would accept poorly designed custom made protocol anymore.
- LetsEncrypt don't have the private key tied to your certificate - Any of the Certificate Authorities could potentially emit unauthorized certificate
Your only protection for all of these problems is HPKP. If you prefer to keep things in Europe, keep that pinned private key in Europe, but the rest doesn't matter.
That said, it's pretty nice that LetsEncrypt forced the ACME protocol on this industry. Not only it create redundancy with mostly interchangeable alternatives but before ACME, there was no way to fully automate certificate provisioning cleanly.
I don't think anybody would be surprise to hear that smokers pay a tobacco surcharge for their health insurance in the US.
High pressure from covid patient is causing healthcare system cost to skyrocket. You have the 10% of unvaccinated who are causing for 45% of that load increase.
In a system with universal healthcare system, where everyone pay for the system with taxation, surcharge have to happen with taxes. If a few decide to get vaccinated great but I don't think it's the point. Honestly, they haven't announced the specific but I doubt the tax will be high enough to account for the real healthcare cost of population vaccinated.
It would definitively compromise the identity/trust part of it.