• nomad@infosec.pub
      link
      fedilink
      arrow-up
      2
      ·
      2 days ago

      I guess that’s a magic bullet then… Just ensure you are using a certificate chain that’s not issued by a authority inside the country.

      • tenchiken@anarchist.nexus
        link
        fedilink
        English
        arrow-up
        2
        ·
        2 days ago

        Along that line, I’d be self signing and requiring a specific client cert to allow connection.

        But yes absolutely good point