Re: Intent to deprecate: Insecure HTTP

2015-04-14 Thread northrupthebandgeek
On Tuesday, April 14, 2015 at 5:39:24 AM UTC-7, Gervase Markham wrote: > On 14/04/15 01:57, northrupt...@gmail.com wrote: > > * Less scary warnings about self-signed certificates (i.e. treat > > HTTPS+selfsigned like we do with HTTP now, and treat HTTP like we do > > with HTTPS+selfsigned now); the

Re: Intent to deprecate: Insecure HTTP

2015-04-14 Thread northrupthebandgeek
On Monday, April 13, 2015 at 8:26:59 PM UTC-7, ipar...@gmail.com wrote: > > * Less scary warnings about self-signed certificates (i.e. treat > > HTTPS+selfsigned like we do with HTTP now, and treat HTTP like we do with > > HTTPS+selfsigned now); the fact that self-signed HTTPS is treated as less

Re: Intent to deprecate: Insecure HTTP

2015-04-13 Thread northrupthebandgeek
On Monday, April 13, 2015 at 7:57:58 AM UTC-7, Richard Barnes wrote: > In order to encourage web developers to move from HTTP to HTTPS, I would > like to propose establishing a deprecation plan for HTTP without security. > Broadly speaking, this plan would entail limiting new features to secure >