Do I need an SSL certificate for a simple community site?

I am working on the deployment of a small community site. To register a user, no more than a username, email address and password are required. I do not even ask for a name and, of course, did not store any confidential data.

Should I still invest in an SSL certificate? Would it be a terrible practice to pass a user password without one?

This is just a personal project, so I would like to avoid additional costs if I could, but I cannot help but feel that I will be irresponsible if I do not defend everything correctly.

+3
source share
10 answers

SSL , https . - , : , , - , , , .

, CACert. (), , , .

+6

, , , , SSL.

SSL. , , , , SSL. .

, , . , , , , ..

, , .

$20 godaddy, . , , .

+4

. , , .

OpenID. , , . , OpenID. , SO - . , , OpenID, , , , .

+2

SSL - .

... , SSL.

/ , , .

+1

- , .

, , .

0

, , SSL , . , www.instantssl.com . , , , , ,

0

SSL, , .

, ! , "kitty37" , .

- "" CMU, , , , "" , , , , , , ..

Firefox, ( openSSH). http://www.cs.cmu.edu/~perspectives/

0

, SSL . , , , , , . , , , .

, , , . OpenID ? , , ?

0

SSl, , , , , " " - - , .

, , .

Oh, and one thing: warm users don’t use secure passwords, so they don’t use their favorite “joe” password, which they use on all their sites.

0
source

If you just want to define the user, why not enable OpenID, for example, stackoverflow ?;) http://openid.net/

0
source

Source: https://habr.com/ru/post/1699438/


All Articles