I'm a little disappointed with the answers from Zypher (one of the Stack Exchange sysadmins) and Jeff Atwood. Particularly troublesome is Jeff's statement "If you have a 'man in the middle' then there are deeper problems, like, you're using a compromised network." I'd argue that it's appropriate, from a security architecture perspective, to treat the entire Internet as a "compromised network".
Admittedly, my use-case for the Stack Exchange sites (specifically Server Fault) is a little different than most people's and I'm a lot more worried about "theft" of my "identity" there than most people would be. Still, though, I'd like to see the answer revisited in light of mid-2012 technology / costs. I suppose I should go post something over there...
Admittedly, my use-case for the Stack Exchange sites (specifically Server Fault) is a little different than most people's and I'm a lot more worried about "theft" of my "identity" there than most people would be. Still, though, I'd like to see the answer revisited in light of mid-2012 technology / costs. I suppose I should go post something over there...