Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Node key management via HSM / MPC #1

Open
przemyslaw opened this issue Feb 5, 2024 · 0 comments
Open

Node key management via HSM / MPC #1

przemyslaw opened this issue Feb 5, 2024 · 0 comments
Labels

Comments

@przemyslaw
Copy link
Collaborator

przemyslaw commented Feb 5, 2024

We must provide a proven scenario where the node operator requires an extra security layer on top of the key management.

Teonite will prepare a document - research about HSM, MPC, TPM open source in the first way.
Teonite will submit this document to Casper to review.
Req:

  • available for everyone (100% operators (amazon, hetzner, ovh, selfhosted + details from Telegram group)
    • Dev will share the latest document on operators env.
    • send to Piotr telegram login to add to Validators Guild
  • hardware available globally
  • ideally provide the ability for multiple nodes to access the same key
  • if not hardware -> software keychain solution
  • cost analysis of infra per node
  • performance should be taken into account
  • allow admins / SRE / Devops to access node hosts without access to private keys
  • https://casperstats.io/stats/networkdata
  • https://casperstats.io/stats/networkdata?tab=nodelist

DoD:

  • after finishing the research provide a CEP

Discussions on isuess (in github)

moubctez pushed a commit that referenced this issue Mar 7, 2024
binary_port: Add missing bytesrepr roundtrip tests
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

1 participant