Access Control and Permissions
How AosCore enforces service-level access control — secret-based authentication, manifest-driven permissions, and the PermHandler's role in mediating access to functional servers.
How AosCore enforces service-level access control — secret-based authentication, manifest-driven permissions, and the PermHandler's role in mediating access to functional servers.
The complete certificate hierarchy in AosCore — cloud CA as root of trust, per-component certificate types, certificate modules, extended key usage, and trust chain validation.
PKCS#11 integration in AosCore — hardware security module configuration, token management, slot selection, key generation, TEE login types, and PIN management.
Step-by-step provisioning sequence that establishes a Node's cryptographic identity — from secure storage initialization through certificate enrollment to operational readiness.
Overview of the AosCore security architecture — certificate-based identity, mutual TLS, PKCS#11 hardware security module integration, provisioning, and access control.