Live data from Hacker News

Viewing profile — joshmoz

joshmoz

HN member
Joined
Thu, May 12, 2011, 10:55 PM UTC
HN karma
2,804
Public activity
82 items

About joshmoz

No profile information was provided.

Recent public activity

  1. comment
    Comment #11685229

    I recommend updating the title to make it clear that only the Let's Encrypt client software has changed its name (and moved to EFF). The Let's Encrypt CA has not changed anything. …

  2. comment
    Comment #11482011

    You don't have to change anything.

  3. comment
    Comment #11482006

    We would love to have Apple and Microsoft on board. If anyone works for them and wants to help get them to sponsor we'd appreciate it! Email sponsor@letsencrypt.org to coordinate.

  4. comment
    Comment #11481249

    It's also worth pointing out that you can have up to 100 SANs in a certificate, so you can technically issue for up to 20x100 (2000) subdomains per week.

  5. comment
    Comment #11457335

    Windows XP support was rolled out March 25 2016. You can find more information about upcoming and completed features here: https://letsencrypt.org/upcoming-features/

  6. comment
    Comment #11432859

    I implemented the native OS X notifications in Firefox/Gecko some years ago. The native OS X API limitations were pretty frustrating (at least at the time, iirc), just didn't line …

  7. comment
    Comment #11212557

    I worked with Robert at Mozilla for many years. He might be the most talented software engineer I've ever met, and he's a strong candidate for nicest person as well. An absolute pl…

  8. comment
    Comment #10988714

    Head of Let's Encrypt here. We considered introducing a site seal because it's a common request but we've decided not to do it (at least for now) for reasons similar to many in thi…

  9. comment
    Comment #10881039

    Head of Let's Encrypt here. We were aware of the "google.com.mg" cert soon after it was issued. We didn't revoke the cert for the same reason we don't revoke most certs: as far as …

  10. comment
    Comment #10856632

    Here is a more complete explanation of Let's Encrypt's views on the subject. https://letsencrypt.org/2015/10/29/phishing-and-malware.html

  11. comment
    Comment #10672173

    Head of Let's Encrypt here. Our #1 expense is salary/benefits (we are hiring, letsencrypt.org/jobs). Other major costs include hosting, auditing, hardware, and legal/administrative…

  12. comment
    Comment #10670041

    Head of Let's Encrypt here. I don't love the number of dependencies for our client either, we're going to work to reduce them.

  13. comment
    Comment #10670024

    Let's Encrypt is cross-signed by IdenTrust, not Entrust.

  14. comment
    Comment #10555913

    Head of Let's Encrypt here. You nailed it. It's important that our certs be free because we can't automate a billing interaction. If we had to charge then sysadmins couldn't just t…

  15. comment
    Comment #10512225

    Let's Encrypt / ISRG ED here. The official client is intended to have a simple mode as well as a "full-service" mode. That said, our client is never going to be ideal for everyone.…

  16. comment
    Comment #10495090

    Let's Encrypt • Full Time • Remote • U.S. and Canada Let's Encrypt is looking for a lead developer to work on our core CA software as well as the Let’s Encrypt client. This include…

  17. comment
    Comment #10417330

    Checked with a sysadmin. I'm pretty sure it's a ciper suite mismatch. The helloworld site is configured with "modern" settings from this page: https://mozilla.github.io/server-side…

  18. comment
    Comment #10417324

    We only issue DV (Domain Validation) certs. DV certs don't include ownership information.

  19. comment
    Comment #10417242

    See a Let's Encrypt cert in action: https://helloworld.letsencrypt.org/ Nice work team!

  20. comment
    Comment #10311443

    Agreed, I don't understand why so many people use homebrew instead of macports. Macports seems to be immune to so many issues that complicate homebrew, and I love that it keeps eve…

  21. comment
    Comment #10266564

    When I was car shopping the VW diesel numbers, for tdi sportwagen in particular, were impressive. Nothing else came close to VW's combination of power, space, and mileage. Now mayb…

  22. comment
    Comment #10217807

    We need to demonstrate proper issuance under our root and gain confidence in our live systems before getting cross-signed. Issuing without a cross-signature for a bit is how we do …

  23. comment
    Comment #10217605

    Fixed, thanks for pointing that out.

  24. story
  25. comment
    Comment #9997737

    Let's Encrypt | Full Time | Remote Let's Encrypt is hiring another sysadmin. Help us make HTTPS ubiquitous! https://letsencrypt.org/ Looking for security-conscious systems administ…