3 ms·
Good point regarding the outcome of an attack. > If Amazon is a bad actor they trivially have access to the HSM because they could just write some software tha
by ecdavis 11y ago
Good point regarding the outcome of an attack.
> If Amazon is a bad actor they trivially have access to the HSM because they could just write some software that pretends to be the HSM.
I believe SafeNet HSMs protect against attacks of this nature.
- benmmurphy 11y agoThat is interesting. So does the device sign its communications with a public key signed by SafeNet?
- ecdavis 11y agoI don't know enough about the SafeNet HSMs to elaborate on that, but they claim: > This manufacturer-validated devicee identification mechanism enables a strong trust model whereby customers can be assured that they are communicating with specific SafeNet hardware units in a way that cannot be spoofed.