(July 11, 2013 at 5:54 am)pocaracas Wrote: My server... which uses a bogus free certificate and gets no traffic, apart from myself... and has everything on default... got rated F, unless we ignore the "trust issues" (which arise from the bogus free certificate - And I do trust myself)
Well, yeah - self-signed certificates are super bad security wise, though as long as you control both ends, keep the private key secured, and are vigilant that someone hasn't MITM'ed your ass you at least can't be snooped on (without the expenditure of possibly more computing resources than anyone has available). Nobody probably wants to, in any case.




