[ / / / / / / / / / / / / / ] [ dir / caos / donkey / guarida / kennedi / lauta / leftpol / sena / sw ][Options][ watchlist ]

/tech/ - Technology

You can now write text to your AI-generated image at https://aiproto.com It is currently free to use for Proto members.
Name
Email
Subject
Comment *
File
Select/drop/paste files here
* = required field[▶ Show post options & limits]
Confused? See the FAQ.
Expand all images

File (hide): 258e561d917c2af⋯.png (27.75 KB, 1382x846, 691:423, fuck_RFC-6797-12.1.png) (h) (u)

[–]

 No.848219>>848222 >>848238 >>848241 >>848361 >>848384 >>849076 [Watch Thread][Show All Posts]

Is there a firefox fork or addon that will let me actually control SSL? All major browsers currently give you little control over its behavior. You're essentially at the mercy of these developers' normie-optimized security policies

>inb4 using firefux in 2018

I'm using waterfox right now, but the idea is the same

I'm looking for this level of control:

-Be able to use strict security settings while being able to bypass it at my discretion unlike pic related which simply forces you to disable the security settings entirely in order to use the website, completely ruining the point of having the extra security for when you actually need it (eg, banking.)

-In a similar vein, be able to bypass HTST, but display a warning (because I don't need https for a fucking news article, and RFC06797-12.1 instructs browsers to give users NO OPTION to bypass broken ssl that's not needed in the first place. In order to be compliant, the browsers have to treat the users like children.)

-Bypass the self-signed certificate warnings with one click, without having to do a bunch of unnecessary clicks to uncheck "permanently store this exception" (and risk actually storing it permanently)

-Display a warning for cuckflare and similar MITM certificates

 No.848221>>849094

Palememe with the palemoon commander addon.


 No.848222

>>848219 (OP)

Couldn't this be done in addon form? Or do the main browsers frown on giving us control over certs via addons?


 No.848226>>848236

once again the answer is to write your own browser in webkit in C or qtwebengine in C++. the work is already done, you get full control, the hardcore code is already written, and all your really doing is overriding what you want, configuring settings and writing a front end.

It's not that hard, I've brought up webkit in 30 minutes in C and another anon here brought up qtwebengine with little effort.


 No.848236

File (hide): 4834467d2f06aca⋯.jpg (277.79 KB, 621x1000, 621:1000, 916e5f899add0e02891f3c4f8e….jpg) (h) (u)

>>848226

As soon as we have a full browser stack written in Rust it'll become feasible. Until then we're still in the dark nigger ages.


 No.848238

>>848219 (OP)

>inb4 using firefux in 2018

No, more like

>using SSL in 2018


 No.848241>>848257 >>848260

>>848219 (OP)

the whole point in SSL is to give you no control. you let a bunch of dumbass corporations (and governments, in the case of export grade bullshit) decide whether you have the right keys for a domain name (that's not even a thing). super convenient!!! :^) if anyone gave a sit they'd use a simple petname system


 No.848257

>>848241

>petname system

What did the cianigger A.I meme by this?


 No.848260

>>848241

sure thing. go shopping online without SSL


 No.848291>>848302

>rrreeees against cloudflare mitm that is in fact a part of website and site owners are fine with what it does when they voluntarily chose to use it as a ddos protection since their datacenter doesn't offer similar service and if you dare to host on one IP prepare to get raped by chinese hackers 24/77

>is fine with receiving unencrypted html newspages possibly mitm'd and altered by anyone between him and the website (ISP, compromised routers and Tor exit nodes)

/tech/ doublethink as it is


 No.848302>>848335

>>848291

>there's nothing wrong with cloudflare goy

http://cryto.net/~joepie91/blog/2016/07/14/cloudflare-we-have-a-problem/

>someone's gonna MITM your news articles to brainwash you!!!

even if that happened, this is only a problem if you're a moron who believes anything they read.

do you really think you need SSL to read some guy's blog ranting about how compiling Python C extensions sucks or whatever? if the SSL doesn't work in that case I just want my browser to get out of my fucking way


 No.848335

>>848302

>someone's gonna MITM your tunisian carpentry forum posts to brainwash you!!!

>someone's gonna MITM your news articles on big media websites that use cloudflare to have geo-distributed caches to brainwash you!!!

Oh, wait, big media sites already brainwash you without third party involvement.

>do you really think you need SSL to read some guy's blog ranting about how compiling Python C extensions sucks or whatever?

What if this guy happens to write about politic topics that are prohibited in my country?

What if someone hacks his website and loads cp to it, then DPI filters of my ISP will report me to Stasi?

What if some skids decide to ddos his website and I won't be able to read my daily dose of compiling Python C extensions articles?


 No.848361>>849168

>>848219 (OP)

There used to be an about:conflig flag to disable that RFC, but mozilla removed it because they are traitors who have taken control from the users and given it to google. But I figured out how to effectively disable HTST. There is a HTST textfile in the profile folder that stores the entries. You can empty it and remove write privileges. There is also some preload list to which you should do the same.


 No.848384

>>848219 (OP)

>I don't need https for a fucking news article

https isn't there to keep the news article out of other people's computers. https is there to keep other people's computers out of your news article.


 No.849076

>>848219 (OP)

just pull the ethernet cord out at the right moment so it fails to negotiate the unwanted ciphers


 No.849094

File (hide): 1ff653588238d85⋯.jpg (185.18 KB, 2048x1536, 4:3, 6896896896868968.jpg) (h) (u)

>>848221

>commander add-on

>using proprietary add-on exclusively made by Palemoon(tm)

Good goy


 No.849168

>>848361

thnx fam




[Return][Go to top][Catalog][Screencap][Nerve Center][Cancer][Update] ( Scroll to new posts) ( Auto) 5
16 replies | 2 images | Page ?
[Post a Reply]
[ / / / / / / / / / / / / / ] [ dir / caos / donkey / guarida / kennedi / lauta / leftpol / sena / sw ][ watchlist ]