Hacker Read top | best | new | newcomments | leaders | about | bookmarklet login
Show HN: Web API Authentication with SSH Public Keys (github.com) similar stories update story
12.0 points by hodgesmr | karma 3937 | avg karma 8.47 2013-04-24 23:50:04+00:00 | hide | past | favorite | 3 comments



view as:

We need to implement something along these lines to secure our API. This is interesting, but I need help understanding why the server can't just provide a random session_key after successful authentication? As long as that session_key is valid on the API then do I care about GUIDs and Public Keys? What is the "Needham-Schroeder-Lowe Public-Key Protocol" portion of this providing?

This is great.

Legal | privacy