• grue@lemmy.worldOP
    link
    fedilink
    English
    arrow-up
    117
    ·
    10 hours ago

    Relevant to !selfhosted because one of the projects getting funding cut is Let’s Encrypt.

    • renegadespork@lemmy.jelliefrontier.net
      link
      fedilink
      English
      arrow-up
      86
      ·
      10 hours ago

      Let’s Encrypt has done so much for encouraging the spread of HTTPS and good certificate practices. If they went away, I honestly think a good chunk of the internet would start breaking after ~6 months.

      • gray@pawb.social
        link
        fedilink
        English
        arrow-up
        35
        arrow-down
        2
        ·
        9 hours ago

        Less HTTPS = easier government & advertiser data collection

      • dan@upvote.au
        link
        fedilink
        English
        arrow-up
        10
        ·
        edit-2
        9 hours ago

        At least there’s some competitors now, which could be used as drop-in replacements if Let’s Encrypt were to disappear.

        I suspect the vast majority of certificate authorities will implement the ACME protocol eventually, since the industry as a whole is moving towards certificates with shorter expiry times, meaning that automation will essentially be mandatory unless you like manually updating certs every 90-180 days.

    • kibiz0r@midwest.social
      link
      fedilink
      English
      arrow-up
      59
      arrow-down
      1
      ·
      9 hours ago

      It’s okay, Let’s Encrypt only provides SSL certs for… 63.7% of the market?

      Okay okay, that is a lot. But what does a CA need funding for anyway? It doesn’t take much bandwidth to send out new certs.

      The only thing that could be expensive is if they had to rapidly invalidate thousands of certs to protect the security of the entire internet.

      But haha, that’s a pretty outlandish scenario that would never happen.

      • sugar_in_your_tea@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        15
        ·
        9 hours ago

        Same. I’ve been thinking about who to donate to this year, and it looks like they’re making the cut. I’ll probably also throw some money at my Lemmy instance and a handful of projects I use, including Tor, because apparently they got caught in the dragnet too.

          • sugar_in_your_tea@sh.itjust.works
            link
            fedilink
            English
            arrow-up
            3
            ·
            56 minutes ago

            Far more than I can reasonably support:

            • self hosted things I use - caddy, the document foundation, Jellyfin, Forgejo, etc
            • Android apps - F-Droid, NewPipe, Signal, RethinkDNS, etc
            • desktop apps - flatpak, For, Godot, etc
            • infrastructure stuff - let’s encrypt, openssh, Linux distros (mine doesn’t accept donations unfortunately), etc

            But the short list for now is:

            • Let’s Encrypt
            • Signal
            • F-Droid

            And I’ll probably run a Tor relay or something as well.