Hacker News new | ask | show | jobs
by jblwps 2270 days ago
What net benefits would you see that having? If I'm allowed to assume that you wouldn't use TLS because of PKI management concerns, I have a hard time seeing how using WireGuard in the large wouldn't have the same problems--you still have to build some kind of management platform on top that verifies host authenticity (ultimately including revocations and more). That is to say, WireGuard in the large will surely (right?) need supporting PKI.
1 comments

Yes mainly because of proper PKI management overhead.

Wouldn't Wireguard work with a simple shared secret on both ends?