1 |
On Mon, 07 Mar 2011 15:06:25 -0500 |
2 |
Olivier Crête <tester@g.o> wrote: |
3 |
|
4 |
> On Mon, 2011-03-07 at 20:47 +0100, Michał Górny wrote: |
5 |
> > Why does everyone assume it needs to be enforced? If user is |
6 |
> > interested in protecting his/her data, he/she can simply use |
7 |
> > https://. If he/she is not, there is no real reason to enforce |
8 |
> > slower (and not always supported) SSL. |
9 |
> |
10 |
> Maybe it's not to protect the user, but to protect the Gentoo |
11 |
> infrastructure.. And really, SSL has been supported by every browser |
12 |
> for the last 15 years. And it is not in any way slow or slower than |
13 |
> non-SSL. |
14 |
|
15 |
If you really think you need to force all users to use SSL, thus |
16 |
assuming they're unable to make their own decisions, why don't you |
17 |
restrict bugzie access completely? |
18 |
|
19 |
-- |
20 |
Best regards, |
21 |
Michał Górny |