3 ms·
It seems like there's a mistake in the diagram. The "notary → mirror" arrow should be replaced with a "notary → go command" one, because the go command shouldn'
by emersion 8y ago
It seems like there's a mistake in the diagram. The "notary → mirror" arrow should be replaced with a "notary → go command" one, because the go command shouldn't trust the mirror when it comes to cryptographic hashes.
- pokstad 8y agoI think the mirror can pass through the public signature provided by the notary. That cannot be spoofed if you have a trust chain for the notary to ensure the mirror has not tampered with the module.
- teacpde 8y agoThe hashes are signed by the notary, go command can get the hashes from anywhere and be able to verified they are signed by the notary.