Live data from Hacker News

Our First Certificate Is Now Live

letsencrypt.org

251–260 of 263 posts

Re: Our First Certificate Is Now Live

#251
post #249
post #235

Earlier quoted context omitted.

Personal attacks can be anonymous, so that's a red herring. And HN's guidelines may not be laws, but neither are they optional—we ban accounts that violate them repeatedly. It's not hard to see what kind of discourse we're going for here. What's hard is to stick to it when you're feeling that someone is subpar. On the internet, human biases yield a strong tendency to feel that way about others, and we all need to be…

Then do the right thing and solve the problem by removing downvote on comments - you will do this community a huge favor and you will simplify the UX as well. It has no purpose outside of emotional buildups. Upvotes give you enough for sorting purposes - it's been working well for Facebook and Twitter. For everything else, there's reddit!

Downvotes are imperfect but HN would be worse without them. However, I don't think that has anything to do with your breaking the rule about incivility. Being downvoted, even being downvoted unfairly, is no excuse. Please only post civil comments from now on.

Re: Our First Certificate Is Now Live

#252
post #251
post #249

Earlier quoted context omitted.

Then do the right thing and solve the problem by removing downvote on comments - you will do this community a huge favor and you will simplify the UX as well. It has no purpose outside of emotional buildups. Upvotes give you enough for sorting purposes - it's been working well for Facebook and Twitter. For everything else, there's reddit!

Downvotes are imperfect but HN would be worse without them. However, I don't think that has anything to do with your breaking the rule about incivility. Being downvoted, even being downvoted unfairly, is no excuse. Please only post civil comments from now on.

I am sure that you cannot back with any credible evidence the assumption than downvoting comments makes HN a better place. You can add flagging and that will do better, but downvoting is unhealthy. The fixed -4 threshold is random and wrong as well. The loyalty to Paul Graham's original decisions is misunderstood loyalty and there are a lot of missed opportunities here, because of these repeated mistakes.

Re: Our First Certificate Is Now Live

#254
post #242
post #213

Earlier quoted context omitted.

Ok, I understand. On a slight side note he may not necessarily need to control the domain entirely, just have access to a privileged email address [1] However, now it seems you won't even need access to an email address. What would stop someone creating a cert for the real citibank.com and using it for a MITM attack? How many people actually check the green bar? [1] http://arstechnica.com/security/2015/03/bogus-ssl-c…

In the live.fi example, it sounds like Microsoft may have failed to prevent a random user from registering administrator@live.fi as a personal account. Citibank probably won't allow a customer to get that e-mail address!

It was hostmaster@live.fi (http://www.tivi.fi/Kaikki_uutiset/2015-03-18/A-Finnish-man-c...)

Re: Our First Certificate Is Now Live

#255
post #189

Earlier quoted context omitted.

The weight works great on a high DPI display, but on older displays, it just doesn't work. Open on a rMBP or iPad, and it's beautiful. I'm guessing the designers are working on a high DPI Mac.

Edit: should be sorted. Original: working on a standard DPI Mac, but it still looks fine - see http://imgur.com/WRWYzBx . Trying to figure it out now...

Do you mean "fine" as in "very fine lines", or "looks fine" as in "looks good"?

Cause that looks like a printer that ran out of ink.

Re: Our First Certificate Is Now Live

#256
post #184
post #82

Earlier quoted context omitted.

You might want to fix your webdesign: http://i.imgur.com/zQbWnUI.png And this is in Firefox, which renders fonts more bold than other browsers.

Edit: I've made some changes to Typekit to thicken things up. Is it better? If not, can you provide details of your OS? Original: I'll investigate and fix that now. What OS are you on so I can reproduce it? It looks this this here in Firefox ( http://imgur.com/WRWYzBx ) and this in Chrome ( http://imgur.com/6dFeQhG ) on OS X, testing across multiple Macs here. I'd really like to fix it though! Thanks for the heads up…

As I said above, the Firefox screenshot looks like a printer that ran out of ink, the Chrome version is slightly better, but look at the letter 'T', that's still wrong, a hairline that falls between pixels. That's only acceptable for text that is not actually intended to be read (thumbnails, mockups, zoomed out stuff, etc).

Re: Our First Certificate Is Now Live

#257
post #252
post #251

Earlier quoted context omitted.

Downvotes are imperfect but HN would be worse without them. However, I don't think that has anything to do with your breaking the rule about incivility. Being downvoted, even being downvoted unfairly, is no excuse. Please only post civil comments from now on.

I am sure that you cannot back with any credible evidence the assumption than downvoting comments makes HN a better place. You can add flagging and that will do better, but downvoting is unhealthy. The fixed -4 threshold is random and wrong as well. The loyalty to Paul Graham's original decisions is misunderstood loyalty and there are a lot of missed opportunities here, because of these repeated mistakes.

I'm curious, did you know you were taking to a moderator? (dang is on the HN staff: http://blog.ycombinator.com/meet-the-people-taking-over-hack... )

I'm asking because I'm wondering if it should be made more obvious that he is when he is posting in his moderation role.

Re: Our First Certificate Is Now Live

#258
post #252
post #251

Earlier quoted context omitted.

Downvotes are imperfect but HN would be worse without them. However, I don't think that has anything to do with your breaking the rule about incivility. Being downvoted, even being downvoted unfairly, is no excuse. Please only post civil comments from now on.

I am sure that you cannot back with any credible evidence the assumption than downvoting comments makes HN a better place. You can add flagging and that will do better, but downvoting is unhealthy. The fixed -4 threshold is random and wrong as well. The loyalty to Paul Graham's original decisions is misunderstood loyalty and there are a lot of missed opportunities here, because of these repeated mistakes.

Going off on perennial questions of forum design is not a good way to deal with the issue here.

When people can't or won't be civil on HN, we ban their accounts. There's no exception for getting downvoted—on the contrary.

Re: Our First Certificate Is Now Live

#259
post #252

Earlier quoted context omitted.

I am sure that you cannot back with any credible evidence the assumption than downvoting comments makes HN a better place. You can add flagging and that will do better, but downvoting is unhealthy. The fixed -4 threshold is random and wrong as well. The loyalty to Paul Graham's original decisions is misunderstood loyalty and there are a lot of missed opportunities here, because of these repeated mistakes.

I'm curious, did you know you were taking to a moderator? (dang is on the HN staff: http://blog.ycombinator.com/meet-the-people-taking-over-hack... ) I'm asking because I'm wondering if it should be made more obvious that he is when he is posting in his moderation role.

Yes, I know who he is. Although I had a much older account, which password I couldn't recover, because it's from the days when no email was necessary here, I frequent HN for years and that's why I care about this community as I spend a significant portion of my life in here.

Re: Our First Certificate Is Now Live

#260

Earlier quoted context omitted.

Part of the label is also the country, if it says "Bank of America [AZ]" your alarms bells should start ringing.

If it says "bankofamericaa.com" your alarm bells should start ringing. Even assuming the attacker can't get a certificate for the right country, how is the user expected to notice (and understand) the wrong country code if they can't notice the wrong domain name?

I'd argue it's at least simpler to notice since it's more readable - it has spaces between words.
Post reply on HN