awful.systems
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
zitrone 🍋 to Programmer Humor@programming.devEnglish • 2 months ago

me when i find out i can use ssh to sign my git commits

lemmings.world

message-square
35
fedilink
227

me when i find out i can use ssh to sign my git commits

lemmings.world

zitrone 🍋 to Programmer Humor@programming.devEnglish • 2 months ago
message-square
35
fedilink
  • @Thunderwolf@lemmy.world
    link
    fedilink
    1•
    edit-2
    2 months ago

    I don’t have much experience in the realm of gpg. My experience is mostly with TLS. From what I know, if you’re doing client authentication, you encrypt your message with your private key, and then the public key on a cert is used for validating that the message actually came from you.

    I think code signing is similar to client auth, but not positive. Again, I use TLS, but I’m not a professional

    https://about.signpath.io/code-signing/theory#%3A~%3Atext=Software+publishers+use+a+secret%2Cpart+of+the+distribution+package.

    Edit:

    What I found from Wikipedia:

    The client sends a CertificateVerify message, which is a signature over the previous handshake messages using the client’s certificate’s private key. This signature can be verified by using the client’s certificate’s public key. This lets the server know that the client has access to the private key of the certificate and thus owns the certificate.

    https://en.m.wikipedia.org/wiki/Transport_Layer_Security#Client-authenticated_TLS_handshake

    • @Xanza@lemm.ee
      link
      fedilink
      English
      1•2 months ago

      This is TLS authentication via SSH, which is a completely different ballgame than using SSH keys for data encryption, decryption, and verification.

Programmer Humor@programming.dev

!programmer_humor@programming.dev

remote_follow_modal_title

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !programmer_humor@programming.dev

Welcome to Programmer Humor!

This is a place where you can post jokes, memes, humor, etc. related to programming!

For sharing awful code theres also Programming Horror.

Rules

  • Keep content in english
  • No advertisements
  • Posts must be related to programming or programmer topics
  • 718 users / day
  • 3.7K users / week
  • 8.16K users / month
  • 15.3K users / 6 months
  • 24.3K subscribers
  • 1.05K Posts
  • 22.4K Comments
  • Modlog
  • mods:
  • Feyter
  • adr1an
  • @BurningTurtle@programming.dev
  • Pierre-Yves Lapersonne
  • BE: 0.19.3
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org