bertrand 🏃 👨‍💻 🎸 · @bertrand
187 followers · 1146 posts · Server piaille.fr

@eingfoan nfc reader plugged through USB. No drivers required. Not coupled with physical access at the time.
I've heard of another manufacturing company deploying 3 technologies badges ( through contact, contactless for physical access, enabled for future use)

#pki #mifare #fido2

Last updated 2 years ago

bertrand 🏃 👨‍💻 🎸 · @bertrand
187 followers · 1146 posts · Server piaille.fr

@eingfoan did a POC with Neowave cards that went live afterwards. Main target population was warehouse workers on shared workstations. Worked like a charm 👌
neowave.fr/en/products/fido-ra

#fido #webauthn #pki #security #2fa #fido2 #nostick #contactless

Last updated 2 years ago

YuutaW 🌸 · @yuuta
376 followers · 1647 posts · Server mastodon.yuuta.moe

The Missing Introduction of Active Directory Certification Services (blog.yuuta.moe/2023/08/15/adcs)

ADCS is a widely-used online CA, but many admins get lost due to its lack of docs.

#blog #sysadmin #windows #pki

Last updated 2 years ago

David Cantrell 🏏 · @DrHyde
160 followers · 876 posts · Server fosstodon.org
Lukas Rox · @rox_lukas
68 followers · 416 posts · Server cmdr.social

openssl genrsa -out key.pem 2048

#matrix #reloaded #keymaker #openssl #pki

Last updated 2 years ago

YuutaW 🌸 · @yuuta
292 followers · 1408 posts · Server mastodon.yuuta.moe
Ian Barker · @iandbarker
51 followers · 352 posts · Server newsie.social

Why CSOs are prioritizing PKI infrastructure as they adapt to post-quantum cryptography [Q&A]

betanews.com/2023/06/28/why-cs

#qanda #pki #cybe

Last updated 2 years ago

LisPi · @lispi314
538 followers · 11497 posts · Server mastodon.top

@eniko @lori @glassbottommeg Considering the sheer unreliability of the for identity-verification, I don't think it makes much sense to pay for the big corpo certs for the majority of sites.

And even for them, without certain very specific security mechanisms that are barely used (some are also missing at the moment; cc @dalias) you just need one of those authorities co-opted by feds to completely break the system, which has been done before.

#ssl #pki #dns

Last updated 2 years ago

VentureBeat :press: · @VentureBeat
52 followers · 73 posts · Server press.coop

Survey results from @PonemonResearch show the urgent need for a data-driven approach to managing at scale. venturebeat.com/security/manag

#machineidentities #cybersecurity #pki #zerotrust #press

Last updated 2 years ago

Adam · @adam
343 followers · 809 posts · Server hax0rbana.social

I just found a gap in my setup. Deploying all servers is fine until you get to the server itself, as it can not be trusted to authenticate itself.

I'm working on a solution now, but this one is tricky and interesting and I'm enjoying the challenge.

The solution will likely be published at some point.

#crypto #pki #zerotrust

Last updated 2 years ago

Ecoist · @ecoist
23 followers · 1235 posts · Server kommunismus.social

RT @PeoplesForumNYC
❗️Did you know that the Indonesian Communist Party () was the largest communist party outside of the Soviet Union and China, until the U.S. backed genocide in 1965?

🧵👇🏽A thread

#pki

Last updated 2 years ago

· @seeteegee
86 followers · 1087 posts · Server social.afront.org

TIL about how the ssh group was working on a replacement to x.509 pki and ca's that we stuck with in large part because of the web. Maybe it's time for from fresh thinking about this with sold new and old ideas.

theworld.com/~cme/html/spki.ht

#postweb #SSH #pki

Last updated 2 years ago

Mauro the Third :it: :ubuntu: · @LupinGe
100 followers · 190 posts · Server mastodon.uno

Non riuscivo a fare funzionare l'autenticazione tramite in Linux e poi ho scoperto che è in problema di Firefox: usando funziona bene.

Sono passato da workstation window$ a Mint!

#pki #brave #linux

Last updated 2 years ago

Next up in our Speaker Spotlight, we have Fraser Tweedale @hackuador talking and , demonstrating as a password replacement:

2023.everythingopen.au/schedul

#everythingopen #cryptography #pki #kerberos #pkinit

Last updated 2 years ago

Madiana A. Argon :verified: · @madargon
965 followers · 537 posts · Server is-a.cat

This is one of these days when I really don't like being my own .
I had to check how much mess did my Bash script with these metadata files produces. And was surprised when I saw nothing was broken. But obviously I found other "interesting" things in metadata.
Expired certs somewhere? Should I worry? This is not critical service (yet?), but it's in the internet. Something should be done.
As I am my own CA *I* have to do something with this, even if it's evening/night and I am tired. I feel I don't have enough energy/mental capacity for this :blobCat_tear:​
And for some reason when I looked at those metadata in file I felt... paralysed? Scared? Overwhelmed? It was strange and not pleasant.

Maaaaybe I wouldn't break anything if I try to do something...

#ca #OpenSSL #tls #pki #selhosting

Last updated 2 years ago

AdrianRamos.es · @adrianramos_es
0 followers · 3 posts · Server mastodon.social

¿Conoces el poder de EasyRSA? Te invito a leer este artículo donde explico qué es y cómo usarlo de forma general:

infraestructurasbigdatacloud.e

#bigdata #cloud #openssl #certs #pki

Last updated 3 years ago

The Locksmith Active Directory (AD) Certificate Services (CS) remediation tool has been updated: github.com/TrimarcJake/Locksmi

New features:
- Support for Restricted Admin Mode. If RAM is detected, Locksmith will ask to be re-run using the -Credential switch.
- If the AD Powershell module is not installed on Win 10/11, Locksmith will attempt to install it for you.
Note: previously only available on server-class OSes.
- New functions for checking user type and elevation status.
- Auto-generated snippets for ownership issues (a subset of ESC4/ESC5).
- Support for non-English Active Directory evironments!

Next planned updates:
- Add individual CA Hosts to $SafeUsers using SIDs.
- Perform additional environment checks before attempting to run.
- Rename modes to something that makes sense.

#iam #identitysecurity #certificateservices #activedirectory #activedirectorycertificateservices #adcs #pki #locksmith #opensource #defensivesecurity #defensivesecuritytooling #pizza

Last updated 3 years ago

NuSkooler · @NuSkooler
38 followers · 257 posts · Server toot.community

l33t.codes/2023/02/22/Have-My- An attempt to explain things with less lingo and with some examples.

InfoSec people can punch me if you like.

#crypto #cryptography #ecdsa #pki #somethingsomethingsec

Last updated 3 years ago

PKI Consortium · @pkic
8 followers · 5 posts · Server infosec.exchange

Mike Ounsworth from Entrust
will give an overview of
@ietf
progress at integrating Post-Quantum Cryptography into common Internet at the Conference of the
@pkic

Registration: lnkd.in/ecYSd9cN
Agenda and more info: lnkd.in/eQx7STfA

#protocols #pqc #security #postquantumcryptography #pki #ssh #ipsec #tls #ssl #dnssec #dane #saml #imaps #pops #smtps #webdav #vpn #irc #xmpp

Last updated 3 years ago

LisPi · @lispi314
241 followers · 3511 posts · Server mastodon.top

@SpaceLifeForm There's exactly no reason why the kind of parties with access with "legitimate" root certificate spoofing authority wouldn't just apply the same thing at national internet exchanges (rather than just nobody Tor exits).

Such fake certificates wouldn't require any exceptions from the browser to keep working & have transparent either.

So it seems doubtful to me that's what's at work.

#mitm #pki #tls

Last updated 3 years ago