How do digital certificates prove the identity of a device?

Posted by StackedCrooked on Stack Overflow See other posts from Stack Overflow or by StackedCrooked
Published on 2010-04-23T19:45:06Z Indexed on 2010/04/23 20:03 UTC
Read the original article Hit count: 168

Filed under:

I understand how the relation between issuer and subject certificates enables verification of the subject's authenticity. If I connect to a networked device, and it sends me its certificate to identify itself, then I can verify that it was issued by a trusted party and that it has not been tampered with in any way. However, suppose I simply upload this certificate onto another device. Then what prevents me from having this device identify itself with the copied certificate?

© Stack Overflow or respective owner

Related posts about certificate