Skip to content

fix: add TOFU binding TTL (7-day expiry)#47

Closed
Jing-yilin wants to merge 1 commit intomainfrom
fix/tofu-ttl
Closed

fix: add TOFU binding TTL (7-day expiry)#47
Jing-yilin wants to merge 1 commit intomainfrom
fix/tofu-ttl

Conversation

@Jing-yilin
Copy link
Contributor

Adds configurable TTL to TOFU public key bindings (default 7 days). After expiry, a new key is accepted as fresh TOFU, limiting the damage window of compromised keys.

Part of architecture Phase 4 polish.

@Jing-yilin
Copy link
Contributor Author

Closing: all changes in this PR have been superseded by the Yggdrasil removal refactor (PR #55). The features (TOFU TTL, key rotation, did:key, UDP rendezvous, bootstrap format) are already in main.

@Jing-yilin Jing-yilin closed this Mar 12, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant