Future-proofing SaltStack
Cloudflare is preparing its infrastructure for the arrival of quantum computers by replacing vulnerable cryptographic algorithms with post-quantum algorithms. The company has focused on making SaltStack, an open-source infrastructure management tool used by many organizations, quantum-secure. In the process, they discovered several security vulnerabilities in Salt's cryptographic protocol and reported them to the developers. Cloudflare is now working on implementing a new transport using WebSocket over mutually authenticated TLS (mTLS) for SaltStack, which could potentially improve performance at scale while making it post-quantum secure.
Company
Cloudflare
Date published
March 31, 2022
Author(s)
Lenka Mareková
Word count
1565
Language
English
Hacker News points
3