Stories
Slash Boxes
Comments

SoylentNews is people

posted by cmn32480 on Sunday September 11 2016, @05:48PM   Printer-friendly
from the there's-gotta-be-a-downside-to-this dept.

According to a post on the Google Online Security Blog, beginning in January 2017 Google Chrome will begin flagging all sites that use traditional HTTP rather than HTTPS for passwords or other sensitive information as "insecure". It also indicates that Google plans to eventually start flagging ALL traditional HTTP-only sites as "insecure". While HTTPS has always made sense for truly sensitive information, a pure HTTPS web does have implications for legacy tools - essentially if anyone is not using the absolute latest of one of the "big three" web browsers, they will always potentially be just one security update away from being locked out of the web.


Original Submission

 
This discussion has been archived. No new comments can be posted.
Display Options Threshold/Breakthrough Mark All as Read Mark All as Unread
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
  • (Score: 2) by JNCF on Monday September 12 2016, @01:45AM

    by JNCF (4317) on Monday September 12 2016, @01:45AM (#400450) Journal

    Now, if they use that as reason to push you down the search results, then yeah, I've got a problem. But I didn't notice any mention of that.

    You're right that this is unrelated, but they've been using HTTPS as a factor in search rankings for a little over two years now. From The Eye of Sauron itself: [googleblog.com]

    For these reasons, over the past few months we’ve been running tests taking into account whether sites use secure, encrypted connections as a signal in our search ranking algorithms. We've seen positive results, so we're starting to use HTTPS as a ranking signal. For now it's only a very lightweight signal — affecting fewer than 1% of global queries, and carrying less weight than other signals such as high-quality content — while we give webmasters time to switch to HTTPS. But over time, we may decide to strengthen it, because we’d like to encourage all website owners to switch from HTTP to HTTPS to keep everyone safe on the web.

    Starting Score:    1  point
    Karma-Bonus Modifier   +1  

    Total Score:   2  
  • (Score: 0) by Anonymous Coward on Monday September 12 2016, @07:58AM

    by Anonymous Coward on Monday September 12 2016, @07:58AM (#400571)

    You're right that this is unrelated, but they've been using HTTPS as a factor in search rankings for a little over two years now.

    So, that's how they keep making search worse...

    Ranking irrelevant https sites above relevant howto and faq documents that only a moron would consider sensitive enough to encrypt.