Skip to content

fix: add TOFU binding TTL (7-day expiry)#47

Open
Jing-yilin wants to merge 1 commit intomainfrom
fix/tofu-ttl
Open

fix: add TOFU binding TTL (7-day expiry)#47
Jing-yilin wants to merge 1 commit intomainfrom
fix/tofu-ttl

Conversation

@Jing-yilin
Copy link
Contributor

Adds configurable TTL to TOFU public key bindings (default 7 days). After expiry, a new key is accepted as fresh TOFU, limiting the damage window of compromised keys.

Part of architecture Phase 4 polish.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant