Re: Intent to deprecate: Insecure HTTP

2015-05-02 Thread imfasterthanneutrino
On Friday, May 1, 2015 at 3:06:18 PM UTC-4, Richard Barnes wrote: > On Thu, Apr 30, 2015 at 9:50 PM, wrote: > > > > 1.Setting a date after which all new features will be available only to > > secure websites > > > > I propose the date to be one year after Let's Encrypt is launched, which > > is a

Re: Intent to deprecate: Insecure HTTP

2015-04-30 Thread imfasterthanneutrino
> 1.Setting a date after which all new features will be available only to > secure websites I propose the date to be one year after Let's Encrypt is launched, which is about mid-2016. By the way, I hope Mozilla's own official website (Mozilla.org) should move to HTTPS-only as soon as possible

Re: Intent to deprecate: Insecure HTTP

2015-04-13 Thread imfasterthanneutrino
On Monday, April 13, 2015 at 8:57:41 PM UTC-4, northrupt...@gmail.com wrote: > > * Less scary warnings about self-signed certificates (i.e. treat > HTTPS+selfsigned like we do with HTTP now, and treat HTTP like we do with > HTTPS+selfsigned now); the fact that self-signed HTTPS is treated as les