‹ BackHN Continuity

Thread

Radicle: Disclosure of Vulnerability in the Network Protocol

154 points · 58 comments · lostmsu

  1. throwaway63467 · · focus · HN ↗
    Just use mTLS via QUIC, it’s standardized, secure, future proof and has implementations in tons of languages and supports proper certificate checks and that whole ecosystem around it which they apparently tried to reinvent. It’s such a great protocol for these use cases, I don’t get why it’s not used more.
    1. innocent_name · · focus · HN ↗
      I don't think the consumer ecosystem is mature yet.

      Adding a cert to my Android phone was a huge pain in the ass. Most homelab apps like Jellyfin don't support it. The homelab space is so buck broken it assumes i don't have a public IP address to just expose things without going through the convoluted VPN setup.

    2. davexunit · · focus · HN ↗
      I don't see how mTLS would work for Radicle or other decentralized systems because, as far as I understand, both parties need to have their certificates signed by a shared root.
Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.