Signing TLS handshakes inside a TPM
bschaatsbergen
15 points
6 comments
September 06, 2026
Related Discussions
Found 5 related stories in 59.6ms across 5,720 title embeddings via pgvector HNSW
- TLS certificates for internal services done right mrl5 · 143 pts · July 09, 2026 · 62% similar
- Show HN: A local MitM proxy to control TLS fingerprints ytkoka · 25 pts · August 18, 2026 · 51% similar
- Ubuntu's TPM encryption switches to snap kernel that blocks deb kernel packages 6jQhWNYh · 41 pts · July 28, 2026 · 47% similar
- Trusted URLs via Cryptographic Signatures Edmond · 28 pts · July 30, 2026 · 45% similar
- Trusting-Trust Attack against an Entire Linux Distribution (via strip utility) signa11 · 27 pts · September 05, 2026 · 42% similar
Discussion Highlights (3 comments)
duk3luk3
Sounds interesting; too bad all we get is text made up by an LLM rather than any of the author's insights.
ranger_danger
Let's hope this doesn't get picked up by the (corporate) masses... the last thing I want is my browser offering personal TLS certificates to every server I visit as some kind of identity verification or fingerprint/tracking. It's bad enough that ssh does this by default with all your keys.
ram_rattle
Nothing new here, attested TLS was being discussed in IETF for quiet sometime right? https://datatracker.ietf.org/doc/draft-fossati-tls-attestati... https://www.youtube.com/watch?v=MF9AwkMJOlw