▲ | throw0101d 4 days ago | |||||||||||||||||||||||||||||||||||||||||||
> By that logic, we don't really need certificates, just TOFU. It works fairly well for SSH, but that tends to be a more technical audience. But doing a "Always trust" or "Always accept" are valid options in many cases (often for internal apps). | ||||||||||||||||||||||||||||||||||||||||||||
▲ | tptacek 4 days ago | parent [-] | |||||||||||||||||||||||||||||||||||||||||||
It does not work well for SSH. We just don't care about how badly it works. | ||||||||||||||||||||||||||||||||||||||||||||
|