I think you are suggesting to (by default) use "TLS, if available" instead of "no SSL", and to never configure "No SSL" (unless manually requested), and to treat "TLS, if available" like unsecured in the UI.
I can agree with that. _______________________________________________ dev-security mailing list dev-security@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-security