I know that I can simply make my own private certificate authority that only I and my family trust. But is there some public provider like letsencrypt that is in a free-er part of the world than the US?

  • themurphy@lemmy.ml
    link
    fedilink
    English
    arrow-up
    109
    arrow-down
    4
    ·
    1 day ago

    Is anyone wonders why it’s a problem it’s under US juristriction:

    Look up the US Cloud Act. It’s everything the media told you China was, but in the hands of an orange dictator.

    • philipp_@discuss.tchncs.de
      link
      fedilink
      English
      arrow-up
      5
      arrow-down
      1
      ·
      6 hours ago

      They have strong canaries in place, namely certificate transparency. They wisely designed themselves in a way to prevent themselves from tampering.

      • themurphy@lemmy.ml
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 hours ago

        Well, honestly?

        Since these certificates are not banned nor up for debate, the NSA probably already have a way to get all the data through another loop hole.

        Yes, it protects against “attacks” from outside, but it’s naive to expect they dont have another way in which goes beyond LetsEncrypt.

    • njordomir@lemmy.world
      link
      fedilink
      English
      arrow-up
      6
      ·
      1 day ago

      'Muricans are so racist, we heard “orange chicken” and thought they were talking about China. 🤣

      I do think we’ll end up scrambling for alternatives at some point, so better to do it now.