Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I think the point is that if you add a temporary exception to accept the unverified certificate, you shouldn't be left with a permanent requirement that localhost have a certificate in the future because of the HSTS header you got during that time.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: