Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> "has never turned over their SSL keys or customers’ SSL keys to anyone;"

How would they be able to give up customers' SSL keys?



Customers on some plan can upload a certificate of their choice, and generally have to provide the key along with it. Keyless SSL exists, but isn't widespread.


Ah, I guess the point I'm missing is that with a 'serverless' setup, the cloud provider must have access to your private key? Unless you use some sort of key server setup (what they call Keyless SSL)


It means the ones they use for the customers site, versus the ones they use for their own site.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: