4 ms·
How are you distributing the hashes?
by rechristened 6y ago
How are you distributing the hashes?
- MaxBarraclough 6y agoEither over HTTPS or by signing the manifest files using a well-known public key, and ensuring that stale manifests are never used (otherwise it's possible for an attacker to cause installation of old, vulnerable software). apt used to be 100% HTTP based. I believe they've changed course recently though. Unsure about Steam. Steam were clear that the reason they adopted insecure HTTP (previously they used a proprietary protocol) was to enable web caching, by ISPs and other organisations. I can imagine that being very beneficial at a commercial LAN party, for instance. Related reading: https://wiki.debian.org/SecureApt https://wiki.debian.org/SecureApt
- ric2b 6y agoNot that I'm agreeing that they don't need HTTP, but they could do a HTTPS connection to fetch the (relatively small) hashes. On the native applications they could bundle their public key and do everything via HTTP, signing the hashes.