Hi,

Ondřej Surý:
> Pervasive monitoring.

In and of itself, if you only access publicly-availble files, that's not a
threat.

> Really we should introduce encryption
> *everywhere*.
> 
This change does not introduce encryption.
It disables the option not to use encryption.

I can accept that e.g. if you're using basic-auth or similar cleartext
password schemes on the link. Otherwise, not so much.

In other words: please add HTTPS capabilities to d-i before you do that.

-- 
-- Matthias Urlichs


-- 
To UNSUBSCRIBE, email to debian-devel-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Archive: https://lists.debian.org/20140720083823.gd15...@smurf.noris.de

Reply via email to