ブックマーク / www.sshark.org (1)

  • SSHARK!

    SSHARK! DNS-based expiration and revocation of SSH client keys Presentation slides from the SSHARK talk at 29c3 are available here: sshark-29c3.pdf The goal of SSHARK is to allow the expiration and revocation of SSH client keys by putting information in DNS TXT records... without creating any additional public key infrastructure,without having to run a special version of the SSH server, andwithout

    tmatsuu
    tmatsuu 2014/10/13
    SSHの公開鍵をDNSのTXTレコードに格納、既存のSSHプログラムにパッチを当てることなくworkaroundでSSH公開鍵の期限や失効を実現。ほほう
  • 1