HNHacker News
TopNewBestAskShowJobs

ran290

182 karma · joined June 24, 2015

submissionscomments
ran290··on Leaving Beta, New Sponsors
The client will be renamed and moved to the EFF soon: https://letsencrypt.org/2016/03/09/le-client-new-home.html
ran290··on WordPress.com turns on HTTPS encryption for all websites
They did: https://community.letsencrypt.org/t/upcoming-intermediate-ch...
ran290··on Let's Encrypt and Nginx – State of the art secure web deployment
I'm curious: why doesn't webroot work for your setup?
ran290··on StartCom will log all issued SSL certificates to public CT log servers
Context: https://news.ycombinator.com/item?id=11330877
ran290··on How to Use Varnish Cache as Secured AWS S3 Gateway
Is it possible to do the back end connection to S3 securely instead of over insecure HTTP?
ran290··on Two more Flash 0-days emerge in Hacking Team leak
Ah, I was under the impression that they've officially moved it out of the 'beta' naming
ran290··on Two more Flash 0-days emerge in Hacking Team leak
Their latest controller (v4?) removed the Flash requirement for both video (playback) and main (maps) IIRC. Do they still have leftover areas that require Flash?
ran290··on Two more Flash 0-days emerge in Hacking Team leak
All my frequent porn sites support HTML5 video now
ran290··on Deprecating Secure Sockets Layer Version 3.0
Indeed. I used to do the same, but I've since switched to only using TLS and taking a couple of seconds to say 'a newer version of SSL' to any confused looking faces in the discussion. After a while of doing this I don't see nearly as many confused faces and others have even taken up the procedure! :)
ran290··on Deprecating Secure Sockets Layer Version 3.0
Great! I hope we can stop using 'SSL' (or even 'SSL/TLS') everywhere and start using just 'TLS' now. :)
ran290··on Can you trust Tor's exit nodes?
Heck, my cellular provider was tracking the HTTP connections of their customers by default to sell profiles to marketing companies. (You could opt out, but I believe the fine print was something along the lines of 'we won't sell your information anymore but we will still collect it for later'). Other Internet providers have offered a cheaper plan to opt-in to traffic snooping for marketing profile building/selling. Tor exit nodes and my residential ISPs are on a similar level of distrust for me.

I've since started using 'whole premises VPN' (all traffic is routed through an encrypted tunnel to a VPS) - I have more confidence in my VPS provider than I do in my residential ISPs. At least the VPS company probably won't use my connection data for marketing profiles..

ran290··on A man who was jailed on the fantasy evidence of a single hair
Hi dang, this is unrelated (feel free to remove this reply) but it seems that my post at https://news.ycombinator.com/item?id=9774037 has disapeared? Could you look into it?
ran290··on Show HN: Up1 – An open-source, client-side encrypted image host and pastebin
An extension for roundcube (https://roundcube.net/) to suppliment or replace the email attach function would be pretty cool