12 ms·
Now I have to trust OpenPubkey, hoping it wont get hacked. No way will I add this to my servers, I will keep using the long live public key.
by ciaovietnam 2y ago
Now I have to trust OpenPubkey, hoping it wont get hacked. No way will I add this to my servers, I will keep using the long live public key.
- bayindirh 2y agoIf you want to roll your own, here's another implementation which people already use, with their own OpenID Connect infrastructures. You can deploy and use in a completely closed system. https://github.com/EOSC-synergy/ssh-oidc https://github.com/EOSC-synergy/ssh-oidc
- EthanHeilman 2y agoThat's neat, I've added it to my reading list.
- EthanHeilman 2y agoOpenPubkey is software and opensource. All software has vulnerabilities but we aren't a service or SaaS or anything.