Jörg-Volker Peetz wrote: > Jörg-Volker Peetz wrote on 06/16/16 15:12: >> Did you take a look here: https://www.debian.org/CD/verify , "Verifying >> authenticity of Debian CDs"? >> >> The https protocol would add quite some overhead to the download of the >> iso-files which are already big by them self. >> > This statement has to be corrected: the overhead of https is hardly > perceptible on "modern" hardware. (See, e.g., > https://www.keycdn.com/blog/https-performance-overhead/ , > https://www.imperialviolet.org/2010/06/25/overclocking-ssl.html ) >
Yeah, it's not much in the way for the hardware ... but it's still electricity and bandwidth that needs paying for. Not that I'm opposed to 'secure' transmissions by any means -- I'm more personally opposed to "it MUST be HTTPS or else it's no good" thinking that has started cropping up more and more recently. -- |_|O|_| Registered Linux user #585947 |_|_|O| Github: https://github.com/dpurgert |O|O|O|