http subversion URLs should be discontinued in favor of https URLs

Dan Lukes dan at obluda.cz
Wed Dec 6 12:35:54 UTC 2017


>>>> It is illusion
> As a security person you do have responsibilities

Lets calm down, guys. Anyone can claim "I'm skilled security officer".

But true professional will define the risk to mitigate *first*.
We can discuss possible solutions *then*.

Flamewars "https will save our souls" v.s. "https is illusion of 
security" with fuzzy goal helps to no one.

Just my $0.02

Dan



More information about the freebsd-security mailing list