-
-
-
@TheAmazingRando yes thank you for sending me that when I’m the oncall person responsible for setting up stunnels this week :P -
@bascule You're welcome :) Just sayin, not every network daemon needs ssl built-in, when it can be easily wrapped in a proxy like that. -
@TheAmazingRando terminating with an external proxy adds a lot of complexity that just melts away if services can terminate SSL natively -
@bascule Sure, and including SSL in a tiny C daemon adds a lot of complexity, too. And now suddenly your daemon can be targeted for flaws. -
@TheAmazingRando If someone pops openssl there’s not a lot of defense in depth offered by terminating in an external process for Redis usage
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.