Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I'm a consumer. I have a web server on IIS. I come to their site. How do I know this?

---

The answer is: I don't. I hit the "getting started" page. I see instructions for Linux. I don't have Linux. I say "oh well," and leave.

In fact that scenario is pretty much exactly what happened a few weeks ago when someone told me about let's encrypt. Which explains the post I made to this thread today.



We've already established that this is a documentation issue worth fixing, but surely you're not suggesting a lack of IIS-specific documentation on the website is reason enough to keep using the beta-label? Have you ever had the pleasure of buying a certificate from $RANDOM_CA_RESELLER? I'd have no trouble sticking an "alpha" label on the majority of those!


Yet, they generally have instructions on how to generate a CSR and import a certificate for IIS (along with other software).

example:

https://knowledge.rapidssl.com/support/ssl-certificate-suppo...


It seems you're misunderstanding what I meant with $RANDOM_CA_RESELLER. There are tons of random hosters who resell SSL certificates (sometimes as a white-label product), and many of them have terrible documentation. RapidSSL, one of the biggest CAs, is certainly not what I had in mind there.

You're also missing my point that a documentation issue doesn't mean a service deserves the "beta" label.


How do you know that certificates are OS-independent and webserver-independent? Common professional knowledge, I guess.

How do you know that there are ACME clients for Windows? Irrelevant towards the beta status of the LE CA.


Again: I thought the goal was to make it as easy as possible to add a SSL cert to any website.

If you make the process require knowledge of acronyms like "ACME" or "LE CA", well. You've not attained that goal. You're not even close. That's the message I'm trying to get across here.

If I misunderstand the goal, then by all means, correct me.


I think knowing what CA stands for is prerequisite knowledge for being a sysadmin.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: