logoalt Hacker News

weinzierlyesterday at 11:15 AM3 repliesview on HN

rustls is there. It has TLS in the name, it is good and there is a C FFI wrapper.


Replies

gspryesterday at 11:34 AM

Rustls still outsources cryptographic primitives. I believe the currently supported providers of those are… drumroll… AWS-LC and Ring. The latter is a fork of BoringSSL. The article describes AWS-LC and BoringSSL as "Googled and Amazoned to death; they don't care about anyone but their own use cases".

The state of things sucks :-(

show 4 replies
dwedgeyesterday at 11:43 AM

A c wrapper to rust feels like we've gone full circle

show 1 reply
koakuma-chanyesterday at 11:38 AM

rustls doesn't have its own implementation of cryptography, you have to choose a provider like openssl or aws lc

show 1 reply