X.509 support in ssh (revisited)

Damien Miller djm at mindrot.org
Thu Jan 24 10:04:55 EST 2002


On Wed, 23 Jan 2002, mouring at etoh.eviladmin.org wrote:

> Until your CA's employees do something brain dead like hand out a copy of
> your key to someone who 'claims' to be an employee of your company.
> 
> Refer to Micorosft and Versign issue last year which caused MS to resign a
> ton of packages and revoke a very heavily used key.
> 
> Think warm fuzzy thoughts that your CA is trustworthy. =)

If your CA is you, then this is less of a worry.

-d




More information about the openssh-unix-dev mailing list