Earlier quoted context omitted.
No it isn't. Not unless it's free. This is the main reason letsencrypt is so popular.
They do have a free plan with unlimited ACME DV certs, though! Not marketed very well and no wildcard certs, but it does exist.
Let's Encrypt bans certificate usage in any US sanctioned territory [pdf]
41–50 of 404 posts
Re: Let's Encrypt bans certificate usage in any US sanctioned territory [pdf]
#42Earlier quoted context omitted.
EU? There’s almost zero information on the company, no privacy policy? The only place I found any mention is the footer, “HID Global Corporation, part of ASSA ABLOY”. Assa Abloy seems Swedish but HID Global is a US company as far as a quick search goes. But without a proper company info page and privacy policy I wouldn’t consider it anywhere near a “good alternative” regardless.
The privacy policy is under legal in the footer, exactly where I'd expect it to be honest. It also gives the company registration: > 1.1. We, ZeroSSL GmbH, FN 443956b (the “Company“) and below that the company address (registered in Austria). Don't get me wrong, I agree that there is some lack of "who actually runs/controls this", especially on the about page where I expect such things to be. At the very least it's n…
Re: Let's Encrypt bans certificate usage in any US sanctioned territory [pdf]
#43Can anyone explain me what went wrong with http://www.cacert.org/ and why they are not supported by any major browser ?
LWN has a good writeup on the audit situation as of 2014: https://lwn.net/Articles/590879/
Re: Let's Encrypt bans certificate usage in any US sanctioned territory [pdf]
#44Has anyone got any experience with Zero SSL? https://zerossl.com/ It seems like a good EU alternative.
Re: Let's Encrypt bans certificate usage in any US sanctioned territory [pdf]
#45Re: Let's Encrypt bans certificate usage in any US sanctioned territory [pdf]
#46This somehow confirms my gut feeling that digital certificates are mainly a means to enforce exclusion on behalf of the certificate authority ownership. It is a tool to prevent people from taking full ownership and control of whatever is affected by digital certificates, be it software, firmware, hardware, or as in this case SSL/TLS. That's digital tyranny in disguise.
I always saw it as a trust-chain and think that anyone is welcomed to create a root certificate and distribute it to whomever trusts them. Most simple services may not need TLS, but with the ISPs eavesdropping on our communication, a form of secure communication is required and the currently best solution we have requires a trust-chain to be built.
Re: Let's Encrypt bans certificate usage in any US sanctioned territory [pdf]
#47Re: Let's Encrypt bans certificate usage in any US sanctioned territory [pdf]
#48This somehow confirms my gut feeling that digital certificates are mainly a means to enforce exclusion on behalf of the certificate authority ownership. It is a tool to prevent people from taking full ownership and control of whatever is affected by digital certificates, be it software, firmware, hardware, or as in this case SSL/TLS. That's digital tyranny in disguise.
I think the "digital tyranny" is a side effect, not the main goal. They're "mainly a means" to prevent certain kinds of MITM attacks.
Re: Let's Encrypt bans certificate usage in any US sanctioned territory [pdf]
#49Earlier quoted context omitted.
"US company must obey US law" doesn't make for a very interesting headline.
The headline is more « US law is batshit and extends well beyond its borders with real world consequences »
Then I graduated in International Relations and understood that the hole is much deeper than that.
Now it's pretty obvious with all the shit that trump has been doing, but back then me and much of the people I know were oblivious to what US power really means.
Re: Let's Encrypt bans certificate usage in any US sanctioned territory [pdf]
#50Has anyone got any experience with Zero SSL? https://zerossl.com/ It seems like a good EU alternative.
EU? There’s almost zero information on the company, no privacy policy? The only place I found any mention is the footer, “HID Global Corporation, part of ASSA ABLOY”. Assa Abloy seems Swedish but HID Global is a US company as far as a quick search goes. But without a proper company info page and privacy policy I wouldn’t consider it anywhere near a “good alternative” regardless.
- We’re based in Austria (ZeroSSL GmbH). The company was acquired by HID in 2024, which is part of Assa Abloy (Sweden).
- We’re not positioning ourselves as a purely EU-based CA substitute, and we generally don’t market it that way.
- For DV certs specifically, we act as a distributor. Under the hood these are Sectigo-issued certificates, similar to how other providers (for example Namecheap) operate.
Happy to clarify further if useful.