Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Once it's networked you lose the "whitelist of systemd services" and it's then no different from any networked secret store.
 help



No, this is a solved problem: https://spiffe.io/

You can do service attestation securely, even for networked services.


Nice. Really grateful for your participation in this comment tree



Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: