
3/31/2016 · Nick Sullivan
What this post added
This post introduces CFSSL 1.2, detailing new features like a TLS endpoint scanner for evaluating server security configurations, a Transport package for Go developers to simplify encrypted connections (handling key management, certificate issuance, and renewal), and enhanced revocation support with PostgreSQL backend, CRL, and OCSP. It also highlights the motivation behind treating internal networks as hostile and the use of CFSSL for service-to-service encryption and mutual authentication.