As a measure for speeding up of webpage loading times i recommended to switch over from HTTP1.1 to HTTP/2 protocol. And just today, firtsly in my experience since HTTP/2 rising, i've heard as the argumentation for non-switching to HTTP/2, that
HTTP/2 would be not secure enough and would have such weighty security issues, that they make any speed boost not worthy.
As the source of those thinking i've got this article.
My state of information doesn't allow me to judge about how weighty are riscs, mentioned in this article. I could suppose, that they are from pretty rare nature - it is just a guess, based on my own monitoring of special media about website performance, which could be (very) holey.
Could somebody explain me:
- what is in general about security issues of HTTP/2?
- are these issues enough cause to not to switch to HTTP/2?