Viewing profile — joshmoz
joshmoz
HN member- Joined
- Thu, May 12, 2011, 10:55 PM UTC
- HN karma
- 2,804
- Public activity
- 82 items
- HN profile
- View on Hacker News ↗
About joshmoz
No profile information was provided.
Recent public activity
-
comment
Comment #11685229
I recommend updating the title to make it clear that only the Let's Encrypt client software has changed its name (and moved to EFF). The Let's Encrypt CA has not changed anything. …
-
comment
Comment #11482011
You don't have to change anything.
-
comment
Comment #11482006
We would love to have Apple and Microsoft on board. If anyone works for them and wants to help get them to sponsor we'd appreciate it! Email sponsor@letsencrypt.org to coordinate.
-
comment
Comment #11481249
It's also worth pointing out that you can have up to 100 SANs in a certificate, so you can technically issue for up to 20x100 (2000) subdomains per week.
-
comment
Comment #11457335
Windows XP support was rolled out March 25 2016. You can find more information about upcoming and completed features here: https://letsencrypt.org/upcoming-features/
-
comment
Comment #11432859
I implemented the native OS X notifications in Firefox/Gecko some years ago. The native OS X API limitations were pretty frustrating (at least at the time, iirc), just didn't line …
-
comment
Comment #11212557
I worked with Robert at Mozilla for many years. He might be the most talented software engineer I've ever met, and he's a strong candidate for nicest person as well. An absolute pl…
-
comment
Comment #10988714
Head of Let's Encrypt here. We considered introducing a site seal because it's a common request but we've decided not to do it (at least for now) for reasons similar to many in thi…
-
comment
Comment #10881039
Head of Let's Encrypt here. We were aware of the "google.com.mg" cert soon after it was issued. We didn't revoke the cert for the same reason we don't revoke most certs: as far as …
-
comment
Comment #10856632
Here is a more complete explanation of Let's Encrypt's views on the subject. https://letsencrypt.org/2015/10/29/phishing-and-malware.html
-
comment
Comment #10672173
Head of Let's Encrypt here. Our #1 expense is salary/benefits (we are hiring, letsencrypt.org/jobs). Other major costs include hosting, auditing, hardware, and legal/administrative…
-
comment
Comment #10670041
Head of Let's Encrypt here. I don't love the number of dependencies for our client either, we're going to work to reduce them.
-
comment
Comment #10670024
Let's Encrypt is cross-signed by IdenTrust, not Entrust.
-
comment
Comment #10555913
Head of Let's Encrypt here. You nailed it. It's important that our certs be free because we can't automate a billing interaction. If we had to charge then sysadmins couldn't just t…
-
comment
Comment #10512225
Let's Encrypt / ISRG ED here. The official client is intended to have a simple mode as well as a "full-service" mode. That said, our client is never going to be ideal for everyone.…
-
comment
Comment #10495090
Let's Encrypt • Full Time • Remote • U.S. and Canada Let's Encrypt is looking for a lead developer to work on our core CA software as well as the Let’s Encrypt client. This include…
-
comment
Comment #10417330
Checked with a sysadmin. I'm pretty sure it's a ciper suite mismatch. The helloworld site is configured with "modern" settings from this page: https://mozilla.github.io/server-side…
-
comment
Comment #10417324
We only issue DV (Domain Validation) certs. DV certs don't include ownership information.
-
comment
Comment #10417242
See a Let's Encrypt cert in action: https://helloworld.letsencrypt.org/ Nice work team!
-
comment
Comment #10311443
Agreed, I don't understand why so many people use homebrew instead of macports. Macports seems to be immune to so many issues that complicate homebrew, and I love that it keeps eve…
-
comment
Comment #10266564
When I was car shopping the VW diesel numbers, for tdi sportwagen in particular, were impressive. Nothing else came close to VW's combination of power, space, and mileage. Now mayb…
-
comment
Comment #10217807
We need to demonstrate proper issuance under our root and gain confidence in our live systems before getting cross-signed. Issuing without a cross-signature for a bit is how we do …
-
comment
Comment #10217605
Fixed, thanks for pointing that out.
- story
-
comment
Comment #9997737
Let's Encrypt | Full Time | Remote Let's Encrypt is hiring another sysadmin. Help us make HTTPS ubiquitous! https://letsencrypt.org/ Looking for security-conscious systems administ…