3 ms·
"We don't upload a private key in the device , we ask the device to generate a key pair - the private key stays onboard. Then we sign the associated public key
by FlacoJones 5y ago
"We don't upload a private key in the device , we ask the device to generate a key pair - the private key stays onboard. Then we sign the associated public key during the manufacturing process to prove that we issued that device. This protects against attackers that would produce a clone looking like the real device but not behaving like it." - Ledger Co-Founder