Opened 9 years ago

Last modified 9 months ago

#2162 assigned enhancement

Support alternate authentication models

Reported by: mikeperry Owned by: mikeperry
Priority: Medium Milestone:
Component: HTTPS Everywhere/EFF-HTTPS Everywhere Version:
Severity: Normal Keywords:
Cc: Actual Points:
Parent ID: Points:
Reviewer: Sponsor:

Description

We should allow rules for sites that are brave enough to refuse to pay the SSL mafia any protection money, yet are still authenticated by other authentication mechanisms, such as MonkeySphere or Perspectives.

Ideally, such rule sets or rule feeds would come with special attributes that designate which authentication mechanism they require, so that we can disable them unless either the user explicitly enables them, or if the appropriate 3rd party Firefox extension is detected and installed.

This attribute could either take the form of authenticated_by="perspectives,monkeysphere,manual", or it could take an individual keyword=value pair, to provide additional options to the authentication addon to determine if the rule should be automatically enabled. (Ie such as auth_monkeysphere="key_id=0xgpg_id").

Child Tickets

Change History (3)

comment:1 Changed 9 years ago by mikeperry

Owner: changed from pde to mikeperry
Status: newassigned

comment:2 Changed 18 months ago by teor

Severity: Normal

Set all open tickets without a severity to "Normal"

comment:3 Changed 9 months ago by cypherpunks3

Is this 2010 ticket still needed given the availability of Let's Encrypt since 2015?

Note: See TracTickets for help on using tickets.