[aerogear-dev] Security for "Device Registration"

Douglas Campos qmx at qmx.me
Tue May 21 12:19:19 EDT 2013


On Tue, May 21, 2013 at 06:05:00PM +0200, Matthias Wessendorf wrote:
> I think I mean more the Unified Push server has the "private key", while
> the device uses the public key,
> to perform the "auth" against the server-side variant (e.g. PhoneABC
> registers itself with the Android variant)
Unless you have two key pairs, this adds zero security to the mix.

amirite, abstractj?

-- 
qmx


More information about the aerogear-dev mailing list