Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

This is an excellent explanation of how private key offloading works, thank you.

BTW, you can store private keys in a HSM on your private key server and that's an additional layer of protection, but nobody uses TLS accelerator cards anymore that I'm aware of. You can simply do the relevant crypto on commodity CPUs and still have plenty of throughput.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: