We use cookies to understand how the site is used and to improve it. You can accept them, or carry on with them switched off.
Also known as: key pinning
Configuring a client to accept one specific certificate or public key for a server instead of anything a trusted authority happens to sign. It blocks interception by a rogue or compromised certificate authority, a realistic concern on managed corporate networks. The cost is upkeep: when the server renews its certificate, the pin must be updated or every connection fails with a certificate error.
Browse all terms in Privacy & Security, or see the full Usenet glossary.