3 ms·
It's an interesting problem, because all the connected devices would need the attack mitigation. Would be interesting to see a protocol which auto-revokes cert
by jtaft 8y ago
It's an interesting problem, because all the connected devices would need the attack mitigation.
Would be interesting to see a protocol which auto-revokes certificates for devices which do not digitally sign some "ping" message periodically. That way if someone digs through the dumpster, the credentials probably won't be valid.