Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
joshmoz
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
joshmoz
10y ago
I recommend updating the title to make it clear that only the Let's Encrypt client software has changed its name (and moved to EFF). The Let's Encrypt CA has not changed anything. More information about this move can be found here
2.
▲
by
joshmoz
10y ago
You don't have to change anything.
3.
▲
by
joshmoz
10y ago
We would love to have Apple and Microsoft on board. If anyone works for them and wants to help get them to sponsor we'd appreciate it! Email sponsor@letsencrypt.org to coordinate.
4.
▲
by
joshmoz
10y ago
It's also worth pointing out that you can have up to 100 SANs in a certificate, so you can technically issue for up to 20x100 (2000) subdomains per week.
5.
▲
by
joshmoz
10y ago
Windows XP support was rolled out March 25 2016. You can find more information about upcoming and completed features here: https://letsencrypt.org/upcoming-features/
6.
▲
by
joshmoz
10y ago
I implemented the native OS X notifications in Firefox/Gecko some years ago. The native OS X API limitations were pretty frustrating (at least at the time, iirc), just didn't line up with the Web APIs all that well. Not blaming Ap
7.
▲
by
joshmoz
11y ago
I worked with Robert at Mozilla for many years. He might be the most talented software engineer I've ever met, and he's a strong candidate for nicest person as well. An absolute pleasure to work with. Mozilla will miss him dearly
8.
▲
by
joshmoz
11y ago
Head of Let's Encrypt here. We considered introducing a site seal because it's a common request but we've decided not to do it (at least for now) for reasons similar to many in this post. It's hard to design a seal that
9.
▲
by
joshmoz
11y ago
Head of Let's Encrypt here. We were aware of the "google.com.mg" cert soon after it was issued. We didn't revoke the cert for the same reason we don't revoke most certs: as far as we can tell, the cert was issued to
10.
▲
by
joshmoz
11y ago
Here is a more complete explanation of Let's Encrypt's views on the subject. https://letsencrypt.org/2015/10/29/phishing-and-malware.html
11.
▲
by
joshmoz
11y ago
Head of Let's Encrypt here. Our #1 expense is salary/benefits (we are hiring, letsencrypt.org/jobs). Other major costs include hosting, auditing, hardware, and legal/administrative.
12.
▲
by
joshmoz
11y ago
Head of Let's Encrypt here. I don't love the number of dependencies for our client either, we're going to work to reduce them.
13.
▲
by
joshmoz
11y ago
Let's Encrypt is cross-signed by IdenTrust, not Entrust.
14.
▲
by
joshmoz
11y ago
Head of Let's Encrypt here. You nailed it. It's important that our certs be free because we can't automate a billing interaction. If we had to charge then sysadmins couldn't just type a command and be on their way. Autom
15.
▲
by
joshmoz
11y ago
Let's Encrypt / ISRG ED here. The official client is intended to have a simple mode as well as a "full-service" mode. That said, our client is never going to be ideal for everyone. We'd be happy to see others create
16.
▲
by
joshmoz
11y ago
Let's Encrypt • Full Time • Remote • U.S. and Canada Let's Encrypt is looking for a lead developer to work on our core CA software as well as the Let’s Encrypt client. This includes fixing bugs, adding features, and improving perf
17.
▲
by
joshmoz
11y ago
Checked with a sysadmin. I'm pretty sure it's a ciper suite mismatch. The helloworld site is configured with "modern" settings from this page: https://mozilla.github.io/server-side-tls/ssl-config-gen
18.
▲
by
joshmoz
11y ago
We only issue DV (Domain Validation) certs. DV certs don't include ownership information.
19.
▲
by
joshmoz
11y ago
See a Let's Encrypt cert in action: https://helloworld.letsencrypt.org/ Nice work team!
20.
▲
by
joshmoz
11y ago
Agreed, I don't understand why so many people use homebrew instead of macports. Macports seems to be immune to so many issues that complicate homebrew, and I love that it keeps everything in its own dir, '/opt'. Easy to
21.
▲
by
joshmoz
11y ago
When I was car shopping the VW diesel numbers, for tdi sportwagen in particular, were impressive. Nothing else came close to VW's combination of power, space, and mileage. Now maybe there are people who know more about cars than I do a
22.
▲
by
joshmoz
11y ago
We need to demonstrate proper issuance under our root and gain confidence in our live systems before getting cross-signed. Issuing without a cross-signature for a bit is how we do this.
23.
▲
by
joshmoz
11y ago
Fixed, thanks for pointing that out.
24.
▲
Our First Certificate Is Now Live
(letsencrypt.org)
1131 points
by
joshmoz
11y ago
|
255 comments
25.
▲
by
joshmoz
11y ago
Let's Encrypt | Full Time | Remote Let's Encrypt is hiring another sysadmin. Help us make HTTPS ubiquitous! https://letsencrypt.org/ Looking for security-conscious systems administrators with the following qualifi
26.
▲
Ask HN: Thoughts on storage solutions providers?
1 points
by
joshmoz
11y ago
|
0 comments
27.
▲
by
joshmoz
11y ago
The Firefox (Desktop) UI is already rendered using Gecko. It has been that way since the beginning. Mozilla spends much more time optimizing HTML and other Web content tech than it does optimizing XUL and XBL. I wouldn't worry too much
28.
▲
by
joshmoz
11y ago
Some context that might help people understand this email... There are two high-level components which make up Firefox. The first is Gecko, the rendering engine. The second is Firefox, the application itself, which uses Gecko to render Web
29.
▲
FDA tells industry to phase out trans fats in processed foods
(america.aljazeera.com)
1 points
by
joshmoz
11y ago
|
0 comments
30.
▲
by
joshmoz
11y ago
Glad you like the project! Contributing to our software is one way to help: https://github.com/letsencrypt/boulder https://github.com/letsencrypt/lets-encrypt-preview Also, if you work for a compa
More ›