Should All Web Traffic Be Encrypted?
codinghorror.com
Should All Web Traffic Be Encrypted?
1–10 of 136 posts
Re: Should All Web Traffic Be Encrypted?
#2[deleted]
Re: Should All Web Traffic Be Encrypted?
#3We use CloudFlare. $20/month and you get your whole site encrypted plus all their other really cool features. It is a no brainer for those of us who can do it without violating contracts.
Re: Should All Web Traffic Be Encrypted?
#4There was a discussion on HN a while back about why not all Internet traffic is encrypted:
Re: Should All Web Traffic Be Encrypted?
#5> On our production frontend machines, SSL/TLS accounts for less than 1% of the CPU load, less than 10KB of memory per connection and less than 2% of network overhead.
This is too good to be true.
Re: Should All Web Traffic Be Encrypted?
#6gmail security is really only good between gmail accounts and is definitely stored in plain text in the googlesphere use PGP if you need to guarantee email privacy.
Re: Should All Web Traffic Be Encrypted?
#7Sorry, off-topic, but as a fan it really bugs me that graphic halfway down appears taken without attribution from Hyperbole and a Half. http://hyperboleandahalf.blogspot.com/
Re: Should All Web Traffic Be Encrypted?
#8Yes, please, encrypt all the things, but absolutely don't use HTTPS to do it.
See Daniel J. Bernsteins pet project CurveCP (http://curvecp.org/). He also had a talk on 27C3 (http://events.ccc.de/congress/2010/Fahrplan/events/4295.en.h...).
Re: Should All Web Traffic Be Encrypted?
#9Funny that https://stackoverflow.com/ certificate is not valid.
Re: Should All Web Traffic Be Encrypted?
#10gmail security is really only good between gmail accounts and is definitely stored in plain text in the googlesphere use PGP if you need to guarantee email privacy.
> is definitely stored in plain text in the googlesphere
have a source for that?