← Back to context

Comment by LtWorf

4 hours ago

Yup, very secure. Then every single IT department installs a cert on the machines to MITM everything.

I have no idea what you're trying to say, there's no IT department managing my laptop and none of the IT departments I've worked in or with "MITM everything." Do you want to try again?

  • On the flip side, every company I've ever worked for has installed trusted company certs on their computers and do MITM everything.

    • Yep. You apparently need HTTPS for intranet resources too, or you can't develop/use web-apps in Chrome, and since no self-respecting CA would certify your localhost, internal homegrown CA it is, baby — and given the web runs on the lovely model "any CA can attest any website; okay, maybe CAA is not a bad idea"...

      1 reply →