Engineering deep dives, product updates, and perspectives on SSH security from the Mezite team.
A technical deep dive into how we use TLS ALPN to serve HTTPS, gRPC, reverse tunnels, and SSH all over a single port, simplifying deployment and firewall rules.
Read moreA technical look at our decision to standardize on Ed25519 for CA keypairs, focusing on performance, security properties, and side-channel resistance.
Read moreToday we are launching Mezite, a self-hosted platform that replaces static SSH keys with certificate-based authentication. Single signed binary, closed source, source-available under enterprise license.
Read moreYour SSH access platform holds the keys to every server in your infrastructure. Here is why it should run on your hardware, in your network, under your control.
Read moreSSH keys have been the default for decades. They are also one of the biggest unmanaged attack surfaces in most organizations. Here is how certificates fix this.
Read moreA technical look at why proxy-based session recording is a flawed architecture for modern infrastructure, and how we implemented node-mode recording at the PTY level in Go.
Read more