• nomad@infosec.pub
    link
    fedilink
    arrow-up
    2
    ·
    2 days ago

    I guess that’s a magic bullet then… Just ensure you are using a certificate chain that’s not issued by a authority inside the country.

    • tenchiken@anarchist.nexus
      link
      fedilink
      English
      arrow-up
      2
      ·
      2 days ago

      Along that line, I’d be self signing and requiring a specific client cert to allow connection.

      But yes absolutely good point