mamot.fr is one of the many independent Mastodon servers you can use to participate in the fediverse.
Mamot.fr est un serveur Mastodon francophone, géré par La Quadrature du Net.

Server stats:

3.5K
active users

🚨 Let’s Encrypt at risk from Trump cuts to OTF: “Let’s Encrypt received around $800,000 in funding from the OTF”

Dear @EUCommission, get your heads out of your arses and let’s find @letsencrypt €1M/year (a rounding error in EU finances) and have them move to the EU.

If Let’s Encrypt is fucked, the web is fucked, and the Small Web is fucked too. So how about we don’t let that happen, yeah?

(In the meanwhile, if the Let’s Encrypt folks want to make a point about how essential they are, it might be an idea to refuse certificates to republican politicians. See how they like their donation systems breaking in real time…)

CC @nlnet @NGIZero@mastodon.xyz

#USA #fascism #OpenTechFund #LetsEncrypt #SSL #TLS #encryption #EU #web #tech #SmallWeb #SmallTech mastodon.social/@publictorsten

Mastodonpublictorsten (@publictorsten@mastodon.social)Wenn Let’s Encrypt plötzlich nicht mehr klappt, wird das halbe Internet aus Zertifikatsfehlern bestehen. https://www.heise.de/news/Nach-Trump-Dekret-Kampf-um-US-Foerdermittel-fuer-Tor-F-Droid-und-Let-s-Encrypt-10328226.html
Tom

@aral Or let's use the protocol they created - ACME - to create more independent CA, EU-based ! github.com/tdelmas/Let-s-Clone

@tdelmas Nice + yep, we could have an EU-based provider and regulate so that browsers must accept them.

And have it work with OpenNIC so we can decouple domain names from the artificial scarcity of the commercial ICAAN.

@tdelmas Good shout. Yes. And what’s the use of a standard if there aren’t multiple implementations?

@tdelmas this is something I’d very much like to get behind to make happen, if you were organising towards it

@celeduc @tdelmas I'm curious about what we could do next here; Tom's repo is a good overview, but the hard part is organising and getting accepted into the certificate stores. But at least we'd not need to pave the way completely from scratch! What do you think?

@nick @celeduc

The first step would be to create a non-profit structure.

Then set up the infrastructure.

Once the structure and the infrastructure is strong, then comes the "getting accepted into certificate stores", which is a multi-year-long process, that needs to be bootstrapped by a cross-signature from an already accepted CA. Maybe @letsencrypt could help for that (or a commercial CA for a fee).

@tdelmas @celeduc The cross-signing is an interesting point I'd not considered — is there anything else where you'd need cross collaboration?

The rest is — pleasently — quite conventional stuff. But it needs funding, which is tricky.

@nick @celeduc You need some collaboration for the inclusion in trust stores and CT logs.

@tdelmas @aral are you not aware of the other ACME-capable CAs? Two of the fives CAs listed here are based in Europe. And I don't know if it's an exhaustive list.
acmeclients.com/certificate-au

acmeclients.comACME ClientsA dedicated resource for finding the right ACME client option to meet your requirements.

@reynir @aral I am, but I am not aware of any non-profit one.