Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
bob1029
3mo ago
0 comments
Save
Share
The private key should be tightly scoped to its context of use. I would definitely agree with you if it's one key that rules the entire kingdom.
0 comments
1 comments · 1 top-level
top
newest
oldest
tjoff
3mo ago
Not sure I follow? Lets say it is limited to one use only, sign an app.
Since I've got control of the box I can now use it to sign any app. Isn't that bad enough?
j
/
k
navigate · click thread line to collapse