@alwayscurious@infosec.exchange
Post #2281533
2026-05-08 17:14 UTC
@filippo@abyssdomain.expert I’ve seen FIPS 140 certificates that make almost no sense, and I’m pretty sure it is to avoid these enormous delays.
Last I checked, the IBM Cryptographic Coprocessor’s certificate only covers loading of a firmware by the bootloader. The certificate of the Private Machines Enforcer blades is invalidated by booting the Compute Engine. In both cases, the certificate doesn't cover what companies actually buy the hardware for.
Replies (0)
No replies.