logoalt Hacker News

BobbyTables2today at 3:38 AM1 replyview on HN

I’ve heard product managers proudly proclaim their firmware was signed using the corporate internal signing service (good).

Of course, the question explicitly being asked (related to internal mandate) was if the firmware was signed — not if the firmware update process actually checked the signature (it certainly did not).


Replies

mschulkindtoday at 3:57 AM

I'm surprised someone named BobbyTables2 wouldn't go straight for the proper way to check email PGP signatures...