DE version is available. Content is displayed in original English for accuracy.
Advertisement
Advertisement
⚡ Community Insights
Discussion Sentiment
78% Positive
Analyzed from 490 words in the discussion.
Trending Topics
#zeroserve#ebpf#same#nginx#linux#kernel#stuff#certificate#still#never

Discussion (21 Comments)Read Original on HackerNews
Very bizarre, never seen that before.
Thumbprints:
For my own stuff that's not meant for a wider audience, I sometimes use mTLS in front of my apps, alongside self-signed certs (my own CA) that shouldn't show up in certificate transparency logs.
This site also seems to be requesting a certificate from the user. Normally you probably don't want that for public facing resources.
https://github.com/losfair/zeroserve/blob/main/CADDY_COMPAT....
AFAIK eBPF can be hardware offloaded. If you have the use case.
The usual 3400 lines lock file and AGENTS.md raise some questions about the aforementioned security, though.