Hacker News new | past | comments | ask | show | jobs | submit login

> Even on a static page you want to be sure that what you see is what the server sent.

So have a PGP signature of the page available and the browser can check it.

> HTTPS provides not only encryption, but also authenticatoin.

And this is the problem. Those are two separate issues and should be handled separately.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: