logoalt Hacker News

cyberaxyesterday at 5:43 PM1 replyview on HN

> With SSH certificates you have to go back to the "keys to the kingdom" antipattern and just hope for the best.

Whut? This is literally the opposite.

With CA certs you can create short-lived certificates, so you can easily grant access to a system for a short time.


Replies

namibjyesterday at 7:10 PM

And what about the CA?

show 2 replies