Comment on Issues with https certs locally
CompactFlax@discuss.tchncs.de 17 hours ago
Firstly, wildcards are convenient but they break your functionality of authenticating the server to which you are connecting. That may or may not be inportant to you.
Doesn’t work without TLS? Start there, making sure dns and reverse proxy works, works, then add the certificate.
ShortN0te@lemmy.ml 16 hours ago
Its good practice to handle https on a reverse proxy. Also who actually does cert pinning?
CompactFlax@discuss.tchncs.de 16 hours ago
I am neither stating TLS termination is wrong, nor providing instructions to cert pinning.
ShortN0te@lemmy.ml 16 hours ago
You are implying that https is supposed to be done by the individual server and not reverse proxy. Since otherwise you could not “authenticating the server”