Hacker News new | ask | show | jobs
by lxgr 496 days ago
> Unless you have a good reason why you need an (asymmetric) signature, you want a MAC.

Is "I want the server/validating side to be safe even against server-side attackers with read-only permissions" not a good reason? Because that's one thing that asymmetric signatures provide out of the box compared to MACs.