# \[solved\] https for forum and homepage

**URL:** https://support.blue-systems.com/t/solved-https-for-forum-and-homepage/3338
**Category:** Site Feedback
**Created:** [August 15, 2015, 10:53am UTC](https://support.blue-systems.com/t/solved-https-for-forum-and-homepage/3338 "2015-08-15T10:53:44Z")
**Posts on this page:** 5
**Page:** 1

<div class="post-metadata">

### Author: ![leszek](https://support.blue-systems.com/user_avatar/support.blue-systems.com/leszek/32/13_2.png) [@leszek](https://support.blue-systems.com/u/leszek)
#### Post date: [August 15, 2015, 10:53am UTC](https://support.blue-systems.com/t/solved-https-for-forum-and-homepage/3338/1 "2015-08-15T10:53:44Z")

</div>

I got a few requests (by encrypted mails :P) to offer https for the homepage and forum.  
I have to agree nowadays we need at least https support.

---

<div class="post-metadata">

### Author: ![abcde](https://support.blue-systems.com/letter_avatar/abcde/32/5_5575768a8748004e209b776fc1b2916d.png) [@abcde](https://support.blue-systems.com/u/abcde)
#### Post date: [August 15, 2015, 1:02pm UTC](https://support.blue-systems.com/t/solved-https-for-forum-and-homepage/3338/2 "2015-08-15T13:02:59Z")

</div>

Yes, this is critical. You know that when you use on this or any other non https-forum a password you use for secure things, this password is been transfered fully clear trough the internet.

This means that you tell your ISP your password. You tell everyone on a public wifi like on starbucks-coffee your password. And so on.

The best solution is to upgrade your webserver to HTTP/2 and to use the free certificates from [https://letsencrypt.org/](https://letsencrypt.org/) when they start their service in few days.

---

<div class="post-metadata">

### Author: ![foeax](https://support.blue-systems.com/letter_avatar/foeax/32/5_5575768a8748004e209b776fc1b2916d.png) [@foeax](https://support.blue-systems.com/u/foeax)
#### Post date: [March 8, 2016, 5:32pm UTC](https://support.blue-systems.com/t/solved-https-for-forum-and-homepage/3338/3 "2016-03-08T17:32:09Z")

</div>

About half a year later and NOTHING happened? Whats going on here?! It seems i am not the only one who see this critical security issues noone care about!

By the way:  
I have been forced to register without any encryption to this forum and had to send in cleartext the password.  
So because i was forced to make it public here it is: “insecurehttp” (without the quotes)

---

<div class="post-metadata">

### Author: ![dbyentzen](https://support.blue-systems.com/letter_avatar/dbyentzen/32/5_5575768a8748004e209b776fc1b2916d.png) [@dbyentzen](https://support.blue-systems.com/u/dbyentzen)
#### Post date: [March 10, 2016, 3:33pm UTC](https://support.blue-systems.com/t/solved-https-for-forum-and-homepage/3338/4 "2016-03-10T15:33:43Z")

</div>

I must agree here. The forum and website should be “HTTPS” in order to increased the security of users to this forum and people who download ISOs. I realize that HTTPS would not have prevented the unfortunate event with Linux Mint as the problem was most likely a WP plugin. However, with LetEncrypt, HTTPS is made relatively easy.  
Also, while an md5sum is available for users I think the use of SHA256 and/or pgp would be better. I have no idea how much additional work doing these things would add as I believe this project is run by a relatively small group I do not wish to add burden.  
I would like to express my appreciation for the absolutely wonderful and professional distro that Netrunner is so if there is any way I can contribute, I’d be happy to.

---

<div class="post-metadata">

### Author: ![foeax](https://support.blue-systems.com/letter_avatar/foeax/32/5_5575768a8748004e209b776fc1b2916d.png) [@foeax](https://support.blue-systems.com/u/foeax)
#### Post date: [March 11, 2018, 7:39pm UTC](https://support.blue-systems.com/t/solved-https-for-forum-and-homepage/3338/5 "2018-03-11T19:39:34Z")

</div>

Dudes(the admins of this ipv4-only server with ip 46.137.88.2 ), whats wrong with you?!  
2 years are gone. TWO YEARS! And NOTHING happened! Still completely insecure! Did you even care about security?

Here a backup of this crazy security ignorance saved for all time: [https://web.archive.org/web/20180311194254/http://forums.netrunner.com/showthread.php?tid=18027](https://web.archive.org/web/20180311194254/http://forums.netrunner.com/showthread.php?tid=18027)
