|
|
|
|
|
by danpalmer
1173 days ago
|
|
Having seen the FIPS certification process happening for a popular brand of HSM (as an outside observer on the attack side), I’d put a fair bit of trust in these systems. Very good isolation at all layers, formal verification, highly resistant to tampering, fuzzing, and so on. Every single part was locked down in a very thoughtful way. There may be no legal liability with the purchase contracts, but these manufacturers certainly seem to approach the problem with the level of consideration that I’d hope for given the importance of the technology. |
|