logoalt Hacker News

pc86today at 7:07 PM1 replyview on HN

On the flip side, every company I've ever worked for has installed trusted company certs on their computers and do MITM everything.


Replies

Joker_vDtoday at 7:27 PM

Yep. You apparently need HTTPS for intranet resources too, or you can't develop/use web-apps in Chrome, and since no self-respecting CA would certify your localhost, internal homegrown CA it is, baby — and given the web runs on the lovely model "any CA can attest any website; okay, maybe CAA is not a bad idea"...

show 1 reply