Skip to content

Clarify rollback attack prevention and fast-forward attack recovery#86

Closed
lukpueh wants to merge 12 commits intotheupdateframework:masterfrom
lukpueh:misc-client-verification
Closed

Clarify rollback attack prevention and fast-forward attack recovery#86
lukpueh wants to merge 12 commits intotheupdateframework:masterfrom
lukpueh:misc-client-verification

Conversation

@lukpueh
Copy link
Copy Markdown
Member

@lukpueh lukpueh commented Jan 30, 2020

This PR combines and updates #72, which clarifies the verification routines for delegated targets, and #74 and #85, which fix #71, i.e. resolve ambiguity around rotating keys and deleting metadata, in order to recover from fast-forward attacks, by temporarily disabling rollback attack checks.

Pre-requisite

Takeover of #72

Takeover of #85

Loading
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Ambiguity around rotating keys and deleting metadata

7 participants