I know that I can simply make my own private certificate authority that only I and my family trust. But is there some public provider like letsencrypt that is in a free-er part of the world than the US?

  • diecknet@discuss.tchncs.de
    link
    fedilink
    English
    arrow-up
    94
    arrow-down
    1
    ·
    1 day ago

    There are some commercial Certificate Authorities that offer free certificates. But in contrast Let’s Encrypt is a non-profit.

    • ZeroSSL (Austria)
    • Actalis (Italy)
    • JustEnoughDucks@slrpnk.net
      link
      fedilink
      English
      arrow-up
      3
      arrow-down
      1
      ·
      4 hours ago

      Also the controlling party in Italy is practically neo-fascist and Austria is also sliding there again with their Nazi party like AfD in Germany and VB in Belgium getting a huge portion of votes.

      I don’t see how it is that much better than a US non- profit.

      I think the core thing is that you have to know of a bunch of different CA options and switch when necessary or on a compromised CA.

      • diaphragmwp@discuss.tchncs.de
        link
        fedilink
        English
        arrow-up
        1
        ·
        6 minutes ago

        The thing is, the US is already fascist. Austria (current day) would be an improvement.

        Also, you know the downfall of Autistici/Inventati - No - check my post history. One of the events that happened is that US owned PIR removed one of the domain names since they own .org. One less US entity, one less point of failure.

      • Björn@swg-empire.de
        link
        fedilink
        English
        arrow-up
        28
        ·
        21 hours ago

        Usually they make money with extended certificates where they not only offer a certificate for example.com but also certify that it belongs to Example Ltd.

        Those extended certificates used to show the company name next to address bars, but I don’t think browsers do that anymore.

        • Victor@lemmy.world
          link
          fedilink
          English
          arrow-up
          5
          ·
          20 hours ago

          a certificate for example.com

          also certify that it belongs to Example Ltd.

          I thought that was the whole point of a certificate, to show that the website belongs to the company? Or nah?

          • WhyJiffie@sh.itjust.works
            link
            fedilink
            English
            arrow-up
            10
            ·
            20 hours ago

            It’s actually to prove that a web server belongs to (or is trusted by for delivering their content) a specific website.

            qualified certificates go a step further, by proving that a web server belongs to a specific company or a real person. but that’s costly, because verification is inherently more difficult.