More summaries and tags
This commit is contained in:
@@ -2,7 +2,17 @@
|
||||
author: "Halvo (Human)"
|
||||
title: "Exploring Enrollment over Secure Transport"
|
||||
date: 2023-03-30
|
||||
tags:
|
||||
- est
|
||||
- secure-transport
|
||||
- certificate-pinning
|
||||
- public-key
|
||||
- tls
|
||||
- authentication
|
||||
- security
|
||||
draft: false
|
||||
summary: |
|
||||
A light‑hearted dive into RFC 7030 (EST) as a smarter alternative to hard‑coded, pinned certificates. By letting clients fetch fresh TLS certs via a public‑key‑authenticated EST server, you dodge the nightly release‑cycle nightmare, gain easy revocation, and keep the private key out of the binary—plus a dash of extra work for the user that’s worth the security payoff.
|
||||
---
|
||||
|
||||
## Introduction
|
||||
|
||||
Reference in New Issue
Block a user