you are viewing a single comment's thread
view the rest of the comments
[+] 13 points 2 years ago* (last edited 2 years ago) (1 child)
  • [–] 9 points 2 years ago (2 children)

    No, that was different. eIDAS is certificate based - those that care will just use a VPN to download a non-EU compliant browser build and only surf with the VPN on. At least that’s my plan.

  • source
  • parent
  • hideshow 4 child comments
  • [+] 15 points 2 years ago* (last edited 2 years ago) (1 child)
  • [–] 5 points 2 years ago (2 children)

    But it’s not spyware. The eIDAS law proposes that governments can insert certificates that spoof the originator. A subtle difference.

    I really hope Mozilla don’t comply

  • source
  • parent
  • hideshow 4 child comments
  • [–] 9 points 2 years ago

    Still weakening encryption standards.

    It would force the inclusion of a "trusted root" into browsers & OSs with the purpose of allowing government entities to spoof certificates. As certificate pinning is becoming mainstream, I would assume it'll require browser & app vendors to weaken those controls too.

    You'd hope ECHR's prior ruling would block this too. For the exact same rationale.

  • source
  • parent
  • [–] 0 points 2 years ago (1 child)

    What would be a non-EU compliant browser?

  • source
  • parent
  • hideshow 2 child comments