• 0 Posts
  • 93 Comments
Joined 8 months ago
cake
Cake day: March 3rd, 2024

help-circle













  • I’m on MBin. Your username is displayed as: walden. I can mouse over that to learn that your full username is @walden@sub.wetshaving.social.

    This is the same thing as email domain names and display names. Yes, scammers still exploit that, too, but for the most part, people have gotten used to also looking at the actual full email address, and not just the display name or mailbox name. The same can happen here.

    Still, I would much prefer if the default view here showed the full username and not just the display name.




  • LetsEncrypt is legit. A downside is that the certs expire after 90 days. However, that also carries an upside in that it limits the damage in case a certificate is compromised. There are procedures by which you can automatically renew/request (I forget whether they allow renewing an existing cert or require a brand new one) LE certs and apply them to your application, but that can be fiddly to configure.

    If you’re not comfortable with configuring automatic certificate cycling, a long-term paid cert would be more appropriate.