Filippo Valsorda

Results 376 comments of Filippo Valsorda

This is a common request, but I prefer not to make the root customizable for a few reasons: 1. The UX is unclear, what happens if you re-run -install without...

Latest mkcert already limits the lifetime of the website certificate to within the iOS limits. The limits don't apply to the lifetime of the root CA. If you are having...

Ah, yeah we should not do that. I'll just add an error for trying to write to an existing file.

Do you have Homebrew in a non-standard path? All that time might be spent just running `brew` :( Could you run it under dtruss?

It's already on the roadmap! https://blog.filippo.io/mkcert-valid-https-certificates-for-localhost/

Given the shorter lifespans enforced by macOS Catalina (see #174), this just became more urgent.

Unfortunately I have no experience with Windows internals. Using an older version is of course not a great solution, so if anyone figures it out I would be happy to...

The underlying implementation should definitely be a separate package. There is a commonly used PKCS#11 package but it's a pain to use. Somewhere on my TODO list there is a...

Ok, thought about it a bit more, and although I don't have time to implement it myself at the moment, I would welcome a *seamless* integration where the key is...

(I still maintain that an attacker can modify the mkcert binary and do approximately what they want, modulo a very serious Touch Bar applet implementation, and that a compromised endpoint...