







Enterprise environments sometimes have a local Certificate Authority (CA) that issues certificates for use within the organization. For an Ubuntu server to be functional, and to trust the hosts in ...
Requirements for HTTPS for Local Domains
When connecting to servers on their local network, users are surprised to encounter user interfaces that display errors, show insecure connections, and block some HTTP features when missing a secure context. However, obtaining PKIX certificates for those servers is difficult for a variety of reasons. This document explores requirements for authenticating local servers.
Certificates for localhost
Sometimes people want to get a certificate for the hostname “localhost”, either for use in local development, or for distribution with a native application that needs to communicate with a web application. Let’s Encrypt can’t provide certificates for “localhost” because nobody uniquely owns it, and it’s not rooted in a top level domain like “.com” or “.net”. It’s possible to set up your own domain name that happens to resolve to 127.0.0.1, and get a certificate for it using the DNS challenge. However, this is generally a bad idea and there are better options.

647959 - Add Honest Achmed's root certificate
RESOLVED (kathleen.a.wilson) in CA Program - CA Certificate Root Program. Last updated 2026-04-24.
HTTPS for Local Networks · Issue #78 · w3c/tpac2024-breakouts
Session description It is not possible to get a publicly trusted CA to sign a certificate for a local domain (i.e. a non-publicly resolvable domain name such as router.local, printer.home, 192.168....
Web of trust
In cryptography, a web of trust is a concept used in PGP, GnuPG, and other OpenPGP-compatible systems to establish the authenticity of the binding between a public key and its owner. Its decentralized trust model is an alternative to the centralized trust model of a public key infrastructure (PKI), which relies exclusively on a certificate authority. As with computer networks, there are many independent webs of trust, and any user can be a part of, and a link between, multiple webs.
Postfix client certificate verification – Dan Langille's Other Diary
I decided to set up some of my mail servers to require certification authentication on the submission port (587). In my case, I want to forward mail from my server at home to my public servers out there on the Internet. I don’t want just anyone to be able to submit mail here, so the easiest way for me do to this was with certification.
Trust & Safety Library - Trust & Safety Professional Association
Welcome to the Trust & Safety Library! We use this space to collect articles, blog posts, journal articles, lectures, podcasts, and websites that trust and safety professionals may find useful in developing policies, supporting moderators, building systems to detect violations, and generally deepening their practice. We welcome your submissions and feedback. This project was initially

CERT/CC’s VINCE Platform Enables Collaboration on Software Vulnerabilities | CMU Software Engineering Institute
The SEI’s CERT Coordination Center (CERT/CC) debuted a web-based collaboration platform for coordinated vulnerability disclosure called the Vulnerability Information and Coordination Environment (VINCE) in June.

On Trust Infrastructure Trust underpins civilisation. It expands the scope and complexity of the pursuits within our collective reach by allowing us to act as a…
Welcome to the Web of Trust
Empowering individuals to co-create decentralized systems for lasting mutual benefit.

Trusted Merchant Service Provider USA | Host Merchant Services
Top-rated merchant service provider offering credit card processing, POS systems, and the lowest rates. Backed by experience and trusted by thousands. Get started with HMS today!
Link your GitHub, domain, and other accounts to your Bluesky identity. Cryptographically signed, user-owned, and portable.
Web of Trust - Vertrauen durch echte Begegnungen
Dezentrales Vertrauensnetzwerk für lokale Gemeinschaften. Menschen vernetzen sich basierend auf echten Begegnungen statt Algorithmen.

LinkedTrust — Deep Tech. Human Trust.
Verified trust systems, civic tech platforms, and AI-powered tools. Real projects, real impact.

Keytrace — One identity, many proofs.
Link your GitHub, domain, and other accounts to your internet handle. Cryptographically signed, user-owned, and portable.
My thoughts on Bluesky verification as someone who was deeply involved in an analogous scheme (selecting trusted root CAs for browsers) at Mozilla many years ago. The analogy is not exact: not trusting a verifier just means no checkmark, while not trusting a root CA means nasty security warnings 1/