

Allowing a certificate without proper validation for local only networks is a terrible, terrible idea. I could super easily use this as a loophole to set up a honeypot public free wi-fi, redirect all traffic through a reverse proxy and man-in-the-middle every single HTTPS connection, effectively allowing me to harvest everyone’s passwords in a really quick and easy way.
Just use DNS verification. It’s not that hard.



Sure, my suggestion would be to join the IWW (Industrial Workers of the World) and get involved locally with them or some other direct action group in your area.
Hopefully where you live there is already a group of people doing these things and they can help you get more into it.