Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

OpenBSD does something like this. In the current release, they provide the public keys for the next release. After trust-on-first-use it's a never-ending cycle.

I call it trust-on-first-use because I didn't verify the initial signatures. Hmmm..



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: