[Cryptography] HSM's to be required for Code Signing Certificates

Henry Baker hbaker1 at pipeline.com
Fri Jan 27 11:49:55 EST 2017


At 12:52 AM 1/27/2017, Peter Gutmann wrote:
>The solution to the problem isn't a FIPS-anything HSM, it's a FIPS-nothing physical control over when something gets signed, and what gets signed.

So, is this another one of those mumbo jumbo witch doctor "security theater" pageants that impress the press (and later, the court judges) ??



More information about the cryptography mailing list