[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: When should we https our mirrors?



On Oct 15, Dimitri John Ledkov <xnox@debian.org> wrote:

> I believe the TLS overhead costs are negligible, especially if one
This is not about the TLS overhead: the real issue is not being able to 
use sendfile(2).

> uses ECC keys. The further privacy it buys one, is IMHO, well worth
> the effort. I would be in favor of Debian mirrors to auto-enroll into
> letsencrypt certs.
This would fail spectacularly due to the per-domain rate limiting 
imposed by LE.

-- 
ciao,
Marco

Attachment: signature.asc
Description: PGP signature


Reply to: