repo-criteria-discuss
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Repo-criteria-discuss] HSTS screw?


From: Richard Stallman
Subject: Re: [Repo-criteria-discuss] HSTS screw?
Date: Wed, 12 Oct 2016 17:36:51 -0400

[[[ To any NSA and FBI agents reading my email: please consider    ]]]
[[[ whether defending the US Constitution against all enemies,     ]]]
[[[ foreign or domestic, requires you to follow Snowden's example. ]]]

  > However if you access Wikipedia through HTTP while almost everyone else
  > uses HTTPS

Nobody logs in on those portals with HTTPS.  We know they don't,
because it does not work.

  > Well, ideally one would agree to one site that everyone uses, which
  > would reduce identifiability.

I agree.  Can you suggest one?

  > * After connecting to the wifi they try to access a predefined URL on a
  >   Google domain that's reachable over HTTP and check the content.

Would someone like to study that site and see what harm it does?  What
value of the version string would enable the browser to pass for Android?

-- 
Dr Richard Stallman
President, Free Software Foundation (gnu.org, fsf.org)
Internet Hall-of-Famer (internethalloffame.org)
Skype: No way! See stallman.org/skype.html.




reply via email to

[Prev in Thread] Current Thread [Next in Thread]