Skip to content

Comment on Running Secure Server Software on Insecure Hardware Without Parachute

Comments

This is a really interesting perspective. THe most important secret you have to manage is often the private key used for TLS, but in usual architectures, it must be present on all of your front servers.

This is a good way to compartmentalize the system, for a very small cost in performance.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.