• 2 Posts
  • 37 Comments
Joined 1 year ago
cake
Cake day: June 9th, 2023

help-circle





  • That’s really unfortunate and a bad service provider for you. If there is nothing that can be done for that service, you don’t need to use that browser as a daily driver, but can just use for the services that you mention. And you need to keep nagging the service provider for support.

    This is not just a browser war. It’s a war over your rights, your control over your choices, your privacy, what software and hardware you can use. You are already feeling how that affects your life daily, consider this in a mass attack on you.

    WEI will enable service providers to decide what firewall you can use, what addons you can have, what version of the browser you can reach their websites, what antivirus software that you need to have, what cpu architecture, which tablet … This list can go on.

    sure this won’t start in this manner right away. But I can assure you it will evolve towards more control service providers have on you.











  • I rechecked the current spec. It does not fully cover what a user agent can ask to the attestor ( “content binding” to be defined). So we can assume this attestation spec is defined at the attestor.

    Of course this does not mean attestor can not have different profiles to attest for.

    So your comment even though is possible, just not defined yet. Which we can - I believe - rightfully assume will be in the final spec or implementation.






  • Block users all you want, but don’t expect me to “attest my hardware and software” from a 3rd party. Let alone make this a standard and think about leaving the keys to parties which are probably “themselves” only.

    How on earth the expectation can be giving authority to third parties to set my hardware and software to be validated so they attest to an arbitrary standard which I will never have control over?

    See the current SSL certificate authorities mess. I have to pay to a third party to asure my clients that my server can securely communicate with them. Now they are doing this to clients with a more strict manner.