Foiling MITM attacks on source and ports trees

Wojciech Puchar wojtek at wojtek.tensor.gdynia.pl
Tue Jan 6 09:22:44 UTC 2009


>> someone like the FreeBSD Foundation as an appropriate body to own the cert.
>
> <OT>
> I would actually trust a self-signed cert by the FreeBSD security officer,
> more then one by Verisign.
of course.

there is no need to have an "authority" to make key pairs, everybody do it 
alone.

actually i would fear using such keys because i'm sure such companies do 
have a copy of both keys.


More information about the freebsd-questions mailing list