Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 18 May 2015 11:21:13 +0300
From:      Slawa Olhovchenkov <slw@zxy.spb.ru>
To:        patpro@patpro.net
Cc:        Ian Smith <smithi@nimnet.asn.au>, freebsd-security@freebsd.org
Subject:   Re: Forums.FreeBSD.org - SSL Issue?
Message-ID:  <20150518082113.GG1394@zxy.spb.ru>
In-Reply-To: <7EA714EE-27E3-4433-96B8-A334C5A7BD30@patpro.net>
References:  <2857899F-802E-4086-AD41-DD76FACD44FB@modirum.com> <05636D22-BBC3-4A15-AC44-0F39FB265CDF@patpro.net> <20150514193706.V69409@sola.nimnet.asn.au> <555476CB.2010005@ivpro.net> <1431608885.1875421.268665801.1220FE34@webmail.messagingengine.com> <5554C025.9090903@ivpro.net> <20150515173820.M69409@sola.nimnet.asn.au> <1431694294.3518862.269597633.213CD919@webmail.messagingengine.com> <20150516190047.R69409@sola.nimnet.asn.au> <7EA714EE-27E3-4433-96B8-A334C5A7BD30@patpro.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Mon, May 18, 2015 at 09:43:24AM +0200, patpro@patpro.net wrote:

> On 18 mai 2015, at 09:05, Ian Smith <smithi@nimnet.asn.au> wrote:
> 
> >> 
> >> Actually, that might be the reason -- Google search results. Perhaps
> >> Google is also logging what protocols/ciphers your HTTPS has and is
> >> using that in search rankings.
> > 
> > You're seriously suggesting that the FreeBSD project should set security 
> > policies to favour higher rankings from an advertising company?
> 
> 
> There's a bigger picture. Google is promoting strong security. Using web sites HTTPS details (proto, ciphers, certificate trustworthiness...) as ranking parameter is an incentive for admin to switch to better protocol and stronger cipher suits (& more expensive certificates).
> Their next step, currently ongoing in fact, is to limit or even remove browser confidence in older protocol/ciphers, so that users would be deterred from visiting those web sites. Domain Validated certificates are probably a target to be shot dead in few years too.
> 
> As an admin I find it to be a pain in the *** to constantly have to deal with latest Google "vision", but as a user I think they are right because that's the way to go for promoting strong crypto.

As user I am don't need crypto, strong or weak.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20150518082113.GG1394>