Comment on Letsencrypt is under US jurisdiction. Is there a free-er alternative?

talkingpumpkin@lemmy.world ⁨5⁩ ⁨hours⁩ ago

What risk are you trying to mitigate, specifically?

If it’s the CA taking over your site, control over your CA specifically doesn’t really give any advantage to an attacker (they would have to hijack traffic and provide a new certificate - nobody will notice if the certificate is from a different CA).

Note that your CA cannot decrypt the exchanges between your server and its clients.

original
Sort:hotnewtop