# Https

**URL:** <https://discourse.peercoin-library.org/t/https/1229>\
**Category:** Forum Support\
**Created:** [December 22, 2013, 3:10am UTC](https://discourse.peercoin-library.org/t/https/1229 "2013-12-22T03:10:48Z")\
**Posts on this page:** 20\
**Page:** 1

<div class="post-metadata">

**Author:** ![MiWCryptoCurrencyMA](https://discourse.peercoin-library.org/letter_avatar_proxy/v4/letter/m/b19c9b/32.png) [@MiWCryptoCurrencyMA](https://discourse.peercoin-library.org/u/MiWCryptoCurrencyMA)\
**Post date:** [December 22, 2013, 3:10am UTC](https://discourse.peercoin-library.org/t/https/1229/1 "2013-12-22T03:10:48Z")

</div>

Hi,

This forum does not handle requests over https.  
If you are accepting user credentials (username/password), or using token based authentication for session (cookies), you should be encrypt the transport layer.  
This is done for the protection of your users, passive capture of authentication tokens would lead to complete account compromise.

Could i request this feature of the forum?  
Thank you

---

<div class="post-metadata">

**Author:** ![romerun](https://discourse.peercoin-library.org/letter_avatar_proxy/v4/letter/r/7ea924/32.png) [@romerun](https://discourse.peercoin-library.org/u/romerun)\
**Post date:** [December 22, 2013, 3:33am UTC](https://discourse.peercoin-library.org/t/https/1229/2 "2013-12-22T03:33:10Z")

</div>

agree, [https://konklone.com/post/switch-to-https-now-for-free](https://konklone.com/post/switch-to-https-now-for-free)

---

<div class="post-metadata">

**Author:** ![irritant](https://discourse.peercoin-library.org/user_avatar/discourse.peercoin-library.org/irritant/32/168_2.png) [@irritant](https://discourse.peercoin-library.org/u/irritant)\
**Post date:** [December 22, 2013, 3:35am UTC](https://discourse.peercoin-library.org/t/https/1229/3 "2013-12-22T03:35:45Z")

</div>

agree

---

<div class="post-metadata">

**Author:** ![MUTO](https://discourse.peercoin-library.org/letter_avatar_proxy/v4/letter/m/cdc98d/32.png) [@MUTO](https://discourse.peercoin-library.org/u/MUTO)\
**Post date:** [December 22, 2013, 7:39am UTC](https://discourse.peercoin-library.org/t/https/1229/4 "2013-12-22T07:39:32Z")

</div>

+1

---

<div class="post-metadata">

**Author:** ![Fuzzybear](https://discourse.peercoin-library.org/user_avatar/discourse.peercoin-library.org/fuzzybear/32/92_2.png) [@Fuzzybear](https://discourse.peercoin-library.org/u/Fuzzybear)\
**Post date:** [December 23, 2013, 3:01pm UTC](https://discourse.peercoin-library.org/t/https/1229/5 "2013-12-23T15:01:55Z")

</div>

I am doing this right now… been putting off and off as not had the time to sort this out but this is the goal of the day 🙂 Hopefully we will have ssl for the forum in a few hours  
Fuzzybear

---

<div class="post-metadata">

**Author:** ![JustaBitofTime](https://discourse.peercoin-library.org/letter_avatar_proxy/v4/letter/j/90db22/32.png) [@JustaBitofTime](https://discourse.peercoin-library.org/u/JustaBitofTime)\
**Post date:** [December 23, 2013, 3:14pm UTC](https://discourse.peercoin-library.org/t/https/1229/6 "2013-12-23T15:14:40Z")

</div>

[quote=“FuzzyBear, post:5, topic:1229”]I am doing this right now… been putting off and off as not had the time to sort this out but this is the goal of the day 🙂 Hopefully we will have ssl for the forum in a few hours  
Fuzzybear[/quote]

Sweet!

---

<div class="post-metadata">

**Author:** ![k33k](https://discourse.peercoin-library.org/letter_avatar_proxy/v4/letter/k/8edcca/32.png) [@k33k](https://discourse.peercoin-library.org/u/k33k)\
**Post date:** [December 23, 2013, 3:28pm UTC](https://discourse.peercoin-library.org/t/https/1229/7 "2013-12-23T15:28:12Z")

</div>

[quote=“FuzzyBear, post:5, topic:1229”]I am doing this right now… been putting off and off as not had the time to sort this out but this is the goal of the day 🙂 Hopefully we will have ssl for the forum in a few hours  
Fuzzybear[/quote]

Great news. HTTPS is really important. At least this is just a forum though. The NXT exchange [dgex.com](http://dgex.com) doesn’t have HTTPS. That is really troubling.

---

<div class="post-metadata">

**Author:** ![Fuzzybear](https://discourse.peercoin-library.org/user_avatar/discourse.peercoin-library.org/fuzzybear/32/92_2.png) [@Fuzzybear](https://discourse.peercoin-library.org/u/Fuzzybear)\
**Post date:** [December 23, 2013, 7:01pm UTC](https://discourse.peercoin-library.org/t/https/1229/8 "2013-12-23T19:01:49Z")

</div>

grrr apparently cos the domain has “coin” in it I have to pay for lvl 2 validation as it is viewed as commercial or financial site. I am arguing my case… failing that i’ll have to send some docs to them but might be a week or so ☹

Fuzzybear

---

<div class="post-metadata">

**Author:** ![Fuzzybear](https://discourse.peercoin-library.org/user_avatar/discourse.peercoin-library.org/fuzzybear/32/92_2.png) [@Fuzzybear](https://discourse.peercoin-library.org/u/Fuzzybear)\
**Post date:** [December 23, 2013, 7:45pm UTC](https://discourse.peercoin-library.org/t/https/1229/9 "2013-12-23T19:45:12Z")

</div>

sigh well a row over the clasification of bitcoin being a currency 😛 and looks like i need $59.90 to get class 2 clearance… least this will give us as many certs as wanted and wildcards… trying to sort out my photo ids… will update when I have more info

Fuzzybear

---

<div class="post-metadata">

**Author:** ![MiWCryptoCurrencyMA](https://discourse.peercoin-library.org/letter_avatar_proxy/v4/letter/m/b19c9b/32.png) [@MiWCryptoCurrencyMA](https://discourse.peercoin-library.org/u/MiWCryptoCurrencyMA)\
**Post date:** [December 24, 2013, 7:47am UTC](https://discourse.peercoin-library.org/t/https/1229/10 "2013-12-24T07:47:34Z")

</div>

Hi FuzzyBear,

Thanks for looking into this.  
If you can start cutting certificates for any domain you own that is worth it. It will allow you to spin off other projects under this name, or have different certificates for subprojects.

---

<div class="post-metadata">

**Author:** ![kitten](https://discourse.peercoin-library.org/letter_avatar_proxy/v4/letter/k/8dc957/32.png) [@kitten](https://discourse.peercoin-library.org/u/kitten)\
**Post date:** [January 13, 2014, 1:28pm UTC](https://discourse.peercoin-library.org/t/https/1229/11 "2014-01-13T13:28:20Z")

</div>

[quote=“FuzzyBear, post:9, topic:1229”]sigh well a row over the clasification of bitcoin being a currency 😛 and looks like i need $59.90 to get class 2 clearance… least this will give us as many certs as wanted and wildcards… trying to sort out my photo ids… will update when I have more info

Fuzzybear[/quote]

I am happy to chip in $10 for this. How’s the application coming along?

---

<div class="post-metadata">

**Author:** ![Fuzzybear](https://discourse.peercoin-library.org/user_avatar/discourse.peercoin-library.org/fuzzybear/32/92_2.png) [@Fuzzybear](https://discourse.peercoin-library.org/u/Fuzzybear)\
**Post date:** [January 13, 2014, 1:52pm UTC](https://discourse.peercoin-library.org/t/https/1229/12 "2014-01-13T13:52:21Z")

</div>

[quote=“kitten, post:11, topic:1229”][quote=“FuzzyBear, post:9, topic:1229”]sigh well a row over the clasification of bitcoin being a currency 😛 and looks like i need $59.90 to get class 2 clearance… least this will give us as many certs as wanted and wildcards… trying to sort out my photo ids… will update when I have more info

Fuzzybear[/quote]

I am happy to chip in $10 for this. How’s the application coming along?[/quote]  
Many thanks for the offer, and prompting me to get back on this. I am updating my drivers license so they have photo id with correct address, then I have all I need and should be able to get ssl sorted.

With a bit of luck should be done in a few weeks. Sorry for delay and thank you for your patients.

Fuzzybear

Sent from my HTC Desire using Tapatalk 2

---

<div class="post-metadata">

**Author:** ![kitten](https://discourse.peercoin-library.org/letter_avatar_proxy/v4/letter/k/8dc957/32.png) [@kitten](https://discourse.peercoin-library.org/u/kitten)\
**Post date:** [January 13, 2014, 8:56pm UTC](https://discourse.peercoin-library.org/t/https/1229/13 "2014-01-13T20:56:43Z")

</div>

Oops sorry, accidentally used crappy AUD for the conversion without thinking… anyway, 10 mBTC sent.

Is there any technical reason for the delay, or just generally busy? I bought an SSL cert from [http://www.positivessl.com/](http://www.positivessl.com/) once and it happened nearly instantly. Edit: i.e. no messing around with photo ID, etc. maybe rapidssl is the same? not sure…

For the first step, can we set up a self-signed certificate to use in the meantime?

---

<div class="post-metadata">

**Author:** ![kitten](https://discourse.peercoin-library.org/letter_avatar_proxy/v4/letter/k/8dc957/32.png) [@kitten](https://discourse.peercoin-library.org/u/kitten)\
**Post date:** [January 14, 2014, 2:27am UTC](https://discourse.peercoin-library.org/t/https/1229/14 "2014-01-14T02:27:14Z")

</div>

Just registered d/peercointalk for when the namecoin folks get TLS integration smoothed out.

---

<div class="post-metadata">

**Author:** ![Fuzzybear](https://discourse.peercoin-library.org/user_avatar/discourse.peercoin-library.org/fuzzybear/32/92_2.png) [@Fuzzybear](https://discourse.peercoin-library.org/u/Fuzzybear)\
**Post date:** [January 14, 2014, 9:29am UTC](https://discourse.peercoin-library.org/t/https/1229/15 "2014-01-14T09:29:02Z")

</div>

[quote=“kitten, post:13, topic:1229”]Oops sorry, accidentally used crappy AUD for the conversion without thinking… anyway, 10 mBTC sent.

Is there any technical reason for the delay, or just generally busy? I bought an SSL cert from [http://www.positivessl.com/](http://www.positivessl.com/) once and it happened nearly instantly. Edit: i.e. no messing around with photo ID, etc. maybe rapidssl is the same? not sure…

For the first step, can we set up a self-signed certificate to use in the meantime?[/quote]  
Hey kitten,

Many thanks for the donation 🙂  
The SSL was going great till they refused to let me SSL a site that had “coin” in the URL as they classed it as finance ☹ Hence the need for photo id… this is in the post and once verified everything should be pretty quick smooth and cheap and we can have wildcard SSL and few other things for the price…

can you explain what I would need to do to set up a self signed cert? and i’ll have a go at it 🙂

Fuzzybear

---

<div class="post-metadata">

**Author:** ![kitten](https://discourse.peercoin-library.org/letter_avatar_proxy/v4/letter/k/8dc957/32.png) [@kitten](https://discourse.peercoin-library.org/u/kitten)\
**Post date:** [January 15, 2014, 4:01am UTC](https://discourse.peercoin-library.org/t/https/1229/16 "2014-01-15T04:01:30Z")

</div>

[quote=“FuzzyBear, post:15, topic:1229”]Hey kitten,

Many thanks for the donation 🙂  
The SSL was going great till they refused to let me SSL a site that had “coin” in the URL as they classed it as finance ☹ Hence the need for photo id… this is in the post and once verified everything should be pretty quick smooth and cheap and we can have wildcard SSL and few other things for the price…

can you explain what I would need to do to set up a self signed cert? and i’ll have a go at it 🙂

Fuzzybear[/quote]

Was this with startssl by any chance? They got me on the “coin” thing too with one of my domains 😛

The guys you’re buying the certificate off will have some instructions on how to generate a Certificate Signing Request (CSR) for them. Part of that process will be creating the server key – so it’s something you’ll have to do anyway, eventually.

Here’s a link explaining the the whole process:

[http://www.akadia.com/services/ssh\_test\_certificate.html](http://www.akadia.com/services/ssh_test_certificate.html)

The key line for self-signing is:

```auto
openssl x509 -req -days 365 -in server.csr -signkey server.key -out server.crt
```

This command takes in a certificate request (server.csr) and a private key (server.key) and outputs it to the certificate (server.crt).

Also read [http://www.iis.net/learn/manage/configuring-security/how-to-set-up-ssl-on-iis](http://www.iis.net/learn/manage/configuring-security/how-to-set-up-ssl-on-iis)

---

<div class="post-metadata">

**Author:** ![Fuzzybear](https://discourse.peercoin-library.org/user_avatar/discourse.peercoin-library.org/fuzzybear/32/92_2.png) [@Fuzzybear](https://discourse.peercoin-library.org/u/Fuzzybear)\
**Post date:** [January 15, 2014, 1:37pm UTC](https://discourse.peercoin-library.org/t/https/1229/17 "2014-01-15T13:37:46Z")

</div>

[quote=“kitten, post:16, topic:1229”][quote=“FuzzyBear, post:15, topic:1229”]Hey kitten,

Many thanks for the donation 🙂  
The SSL was going great till they refused to let me SSL a site that had “coin” in the URL as they classed it as finance ☹ Hence the need for photo id… this is in the post and once verified everything should be pretty quick smooth and cheap and we can have wildcard SSL and few other things for the price…

can you explain what I would need to do to set up a self signed cert? and i’ll have a go at it 🙂

Fuzzybear[/quote]

Was this with startssl by any chance? They got me on the “coin” thing too with one of my domains 😛

The guys you’re buying the certificate off will have some instructions on how to generate a Certificate Signing Request (CSR) for them. Part of that process will be creating the server key – so it’s something you’ll have to do anyway, eventually.

Here’s a link explaining the the whole process:

[http://www.akadia.com/services/ssh\_test\_certificate.html](http://www.akadia.com/services/ssh_test_certificate.html)

The key line for self-signing is:

```auto
openssl x509 -req -days 365 -in server.csr -signkey server.key -out server.crt
```

This command takes in a certificate request (server.csr) and a private key (server.key) and outputs it to the certificate (server.crt).

Also read [http://www.iis.net/learn/manage/configuring-security/how-to-set-up-ssl-on-iis[/quote]](http://www.iis.net/learn/manage/configuring-security/how-to-set-up-ssl-on-iis%5B/quote%5D)  
Awesome kitten I know what I will be doing tonight 🙂

Oh and yes it was through startssl 😛

Fuzzybear

---

<div class="post-metadata">

**Author:** ![kitten](https://discourse.peercoin-library.org/letter_avatar_proxy/v4/letter/k/8dc957/32.png) [@kitten](https://discourse.peercoin-library.org/u/kitten)\
**Post date:** [January 19, 2014, 1:15pm UTC](https://discourse.peercoin-library.org/t/https/1229/18 "2014-01-19T13:15:40Z")

</div>

Hey Fuzzybear, how did you go with this?

I’m available to help out if you want (e.g. over IRC)

Edit: I’ll actually be away most of this week, but we can sort out a time for it if you want, just post here or PM.

---

<div class="post-metadata">

**Author:** ![kitten](https://discourse.peercoin-library.org/letter_avatar_proxy/v4/letter/k/8dc957/32.png) [@kitten](https://discourse.peercoin-library.org/u/kitten)\
**Post date:** [January 31, 2014, 3:22am UTC](https://discourse.peercoin-library.org/t/https/1229/19 "2014-01-31T03:22:05Z")

</div>

bump

---

<div class="post-metadata">

**Author:** ![Fuzzybear](https://discourse.peercoin-library.org/user_avatar/discourse.peercoin-library.org/fuzzybear/32/92_2.png) [@Fuzzybear](https://discourse.peercoin-library.org/u/Fuzzybear)\
**Post date:** [February 2, 2014, 9:07pm UTC](https://discourse.peercoin-library.org/t/https/1229/20 "2014-02-02T21:07:58Z")

</div>

Hey kitten,

Thank you for keeping on at me about this… I have now self signed a certificate on the server so you will get a wrong site and unknown user alert, but this should be good enough for you all to access via https now. Do I need to clarify the certificate hash or anything or is this good enough till the proper https is sorted?

[https://www.peercointalk.org](https://www.peercointalk.org)

give it a try 🙂

Fuzzybear

[Next page](https://discourse.peercoin-library.org/t/https/1229.md?page=2)
