<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Security Archives - The Golioth Developer Blog</title>
	<atom:link href="https://blog.golioth.io/category/platform/security/feed/" rel="self" type="application/rss+xml" />
	<link>https://blog.golioth.io/category/platform/security/</link>
	<description>Golioth, Zephyr, and IoT Development News and How Tos</description>
	<lastBuildDate>Tue, 03 Mar 2026 14:17:17 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://blog.golioth.io/wp-content/uploads/2023/09/cropped-Golioth_Symbol_Coral_RGB-1-32x32.png</url>
	<title>Security Archives - The Golioth Developer Blog</title>
	<link>https://blog.golioth.io/category/platform/security/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Introducing Certificate Rotation with Hosted PKI providers</title>
		<link>https://blog.golioth.io/introducing-certificate-rotation-with-hosted-pki-providers/</link>
		
		<dc:creator><![CDATA[Trond Snekvik]]></dc:creator>
		<pubDate>Tue, 16 Dec 2025 20:00:24 +0000</pubDate>
				<category><![CDATA[Device Management]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Certificate]]></category>
		<category><![CDATA[Certificate Rotation]]></category>
		<category><![CDATA[Hosted PKI]]></category>
		<category><![CDATA[PKI]]></category>
		<guid isPermaLink="false">https://blog.golioth.io/?p=10386</guid>

					<description><![CDATA[<p>Golioth pulls the IoT industry forward by making it easier than ever to rotate device certificates on embedded devices. A new Hosted PKI provider service is integrated with Amazon Private Certificate Authority (CA) and will include other Hosted PKI providers soon. </p>
<p>The post <a href="https://blog.golioth.io/introducing-certificate-rotation-with-hosted-pki-providers/">Introducing Certificate Rotation with Hosted PKI providers</a> appeared first on <a href="https://blog.golioth.io">The Golioth Developer Blog</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Signed URLs on ESP32</title>
		<link>https://blog.golioth.io/signed-urls-on-esp32/</link>
		
		<dc:creator><![CDATA[Dan Mangum]]></dc:creator>
		<pubDate>Tue, 04 Nov 2025 14:59:06 +0000</pubDate>
				<category><![CDATA[Data Management]]></category>
		<category><![CDATA[Device Management]]></category>
		<category><![CDATA[Platform]]></category>
		<category><![CDATA[Security]]></category>
		<guid isPermaLink="false">https://blog.golioth.io/?p=10252</guid>

					<description><![CDATA[<p>This week we released v0.2.0 of signy, which expands support beyond Zephyr RTOS to Espressif's ESP-IDF. In addition to bringing signed URLs to more embedded devices, ESP-IDF support is particularly useful due to the framework's built-in OTA firmware update capabilities.</p>
<p>The post <a href="https://blog.golioth.io/signed-urls-on-esp32/">Signed URLs on ESP32</a> appeared first on <a href="https://blog.golioth.io">The Golioth Developer Blog</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>New Console Feature: The Certificate Generator</title>
		<link>https://blog.golioth.io/new-console-feature-the-certificate-generator/</link>
		
		<dc:creator><![CDATA[Trond Snekvik]]></dc:creator>
		<pubDate>Thu, 23 Oct 2025 18:07:37 +0000</pubDate>
				<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Platform]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Certificate]]></category>
		<category><![CDATA[certificate authentication]]></category>
		<category><![CDATA[Certificate Generator]]></category>
		<guid isPermaLink="false">https://blog.golioth.io/?p=10216</guid>

					<description><![CDATA[<p>The Certificate Generator is now available on the Golioth Console, which makes provisioning devices in a secure way easier during the prototyping phase of using Golioth</p>
<p>The post <a href="https://blog.golioth.io/new-console-feature-the-certificate-generator/">New Console Feature: The Certificate Generator</a> appeared first on <a href="https://blog.golioth.io">The Golioth Developer Blog</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Signed URLs for Embedded Devices</title>
		<link>https://blog.golioth.io/signed-urls-for-embedded-devices/</link>
		
		<dc:creator><![CDATA[Dan Mangum]]></dc:creator>
		<pubDate>Tue, 16 Sep 2025 14:26:46 +0000</pubDate>
				<category><![CDATA[Data Management]]></category>
		<category><![CDATA[Device Management]]></category>
		<category><![CDATA[Platform]]></category>
		<category><![CDATA[Security]]></category>
		<guid isPermaLink="false">https://blog.golioth.io/?p=10093</guid>

					<description><![CDATA[<p>Today we are launching support for device signed URLs, which is now available for Golioth projects in Teams or Enterprise tier organizations. The feature is off by default, but can be enabled on the settings page for a project. We are also releasing signy, an open source firmware library for generating signed URLs on embedded [&#8230;]</p>
<p>The post <a href="https://blog.golioth.io/signed-urls-for-embedded-devices/">Signed URLs for Embedded Devices</a> appeared first on <a href="https://blog.golioth.io">The Golioth Developer Blog</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Unwrapping Certificates</title>
		<link>https://blog.golioth.io/unwrapping-certificates/</link>
		
		<dc:creator><![CDATA[Trond Snekvik]]></dc:creator>
		<pubDate>Tue, 25 Mar 2025 14:52:51 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<guid isPermaLink="false">https://blog.golioth.io/?p=9219</guid>

					<description><![CDATA[<p>Certificates are the most secure way to connect your device to the cloud. This article reduces confusion surrounding them with simple examples.</p>
<p>The post <a href="https://blog.golioth.io/unwrapping-certificates/">Unwrapping Certificates</a> appeared first on <a href="https://blog.golioth.io">The Golioth Developer Blog</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>A Device That Can’t Be Updated Is a Device That Can’t Be Trusted</title>
		<link>https://blog.golioth.io/a-device-that-cant-be-updated-is-a-device-that-cant-be-trusted/</link>
		
		<dc:creator><![CDATA[Dylan Swartz]]></dc:creator>
		<pubDate>Thu, 20 Mar 2025 14:57:05 +0000</pubDate>
				<category><![CDATA[Bluetooth]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[OTA]]></category>
		<category><![CDATA[System design]]></category>
		<guid isPermaLink="false">https://blog.golioth.io/?p=9262</guid>

					<description><![CDATA[<p>Over-the-air updates are a crucial part of building and deploying secured devices, yet many product companies skip this step. This post outlines why it's difficult and how Golioth is making it easier. </p>
<p>The post <a href="https://blog.golioth.io/a-device-that-cant-be-updated-is-a-device-that-cant-be-trusted/">A Device That Can’t Be Updated Is a Device That Can’t Be Trusted</a> appeared first on <a href="https://blog.golioth.io">The Golioth Developer Blog</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>How to Provision and Store IoT Device Certificates</title>
		<link>https://blog.golioth.io/how-to-provision-and-store-iot-device-certificates/</link>
					<comments>https://blog.golioth.io/how-to-provision-and-store-iot-device-certificates/#comments</comments>
		
		<dc:creator><![CDATA[Mike Szczys]]></dc:creator>
		<pubDate>Tue, 05 Sep 2023 15:00:56 +0000</pubDate>
				<category><![CDATA[Platform]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[certificate authentication]]></category>
		<category><![CDATA[demo]]></category>
		<category><![CDATA[device credentials]]></category>
		<category><![CDATA[ECDSA]]></category>
		<category><![CDATA[IoT security]]></category>
		<guid isPermaLink="false">https://goliothblogdev.wpenginepowered.com/?p=5084</guid>

					<description><![CDATA[<p>Every IoT device should operate over an encrypted channel. But how exactly does that security work as your fleet rapidly grows? Our recommendation is to use certificate authentication to deliver strong encryption while solving common fleet management problems. Today we&#8217;re showing how to provision and store IoT device certificates. Certificate Authentication based on ECDSA Golioth [&#8230;]</p>
<p>The post <a href="https://blog.golioth.io/how-to-provision-and-store-iot-device-certificates/">How to Provision and Store IoT Device Certificates</a> appeared first on <a href="https://blog.golioth.io">The Golioth Developer Blog</a>.</p>
]]></description>
		
					<wfw:commentRss>https://blog.golioth.io/how-to-provision-and-store-iot-device-certificates/feed/</wfw:commentRss>
			<slash:comments>6</slash:comments>
		
		
			</item>
		<item>
		<title>Golioth Certificate-Based Authentication</title>
		<link>https://blog.golioth.io/introducing-golioth-certificate-based-authentication/</link>
		
		<dc:creator><![CDATA[Vit Prajzler]]></dc:creator>
		<pubDate>Tue, 13 Dec 2022 16:07:08 +0000</pubDate>
				<category><![CDATA[Device Management]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Platform]]></category>
		<category><![CDATA[Security]]></category>
		<guid isPermaLink="false">https://goliothblogdev.wpenginepowered.com/?p=3644</guid>

					<description><![CDATA[<p>Certificates ensure secure connection between device and cloud, from provisioning until decommissioning. Today we are announcing the ability to use Certificates with the Golioth platform.</p>
<p>The post <a href="https://blog.golioth.io/introducing-golioth-certificate-based-authentication/">Golioth Certificate-Based Authentication</a> appeared first on <a href="https://blog.golioth.io">The Golioth Developer Blog</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Why use certificates for Internet of Things authentication (DTLS)</title>
		<link>https://blog.golioth.io/why-use-certificates-for-internet-of-things-authentication-dtls/</link>
		
		<dc:creator><![CDATA[Vit Prajzler]]></dc:creator>
		<pubDate>Thu, 27 Oct 2022 16:11:49 +0000</pubDate>
				<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Certificate]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[X.509]]></category>
		<guid isPermaLink="false">https://goliothblogdev.wpenginepowered.com/?p=3301</guid>

					<description><![CDATA[<p>How can security improve when manufacturing large volumes of devices? That&#8217;s the question I ended on in my last article about Golioth Pre-Shared Keys (PSK). Securing a large population of devices (10k or more) in a way that’s scalable and meets your project’s budgets is not trivial, but it is solvable. It takes a combination [&#8230;]</p>
<p>The post <a href="https://blog.golioth.io/why-use-certificates-for-internet-of-things-authentication-dtls/">Why use certificates for Internet of Things authentication (DTLS)</a> appeared first on <a href="https://blog.golioth.io">The Golioth Developer Blog</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Yes, even your IoT prototype should be secure</title>
		<link>https://blog.golioth.io/yes-even-your-iot-prototype-should-be-secure/</link>
		
		<dc:creator><![CDATA[Vit Prajzler]]></dc:creator>
		<pubDate>Thu, 11 Nov 2021 22:27:12 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Webinars]]></category>
		<category><![CDATA[PSK]]></category>
		<category><![CDATA[security]]></category>
		<guid isPermaLink="false">https://blog.golioth.network/?p=338</guid>

					<description><![CDATA[<p>Vit Prajzler, CTO of Golioth, explains the concept of a Pre-Shared Key (PSK) and how it lends a simple but flexible amount of security for prototypes on the Golioth network. IoT prototypes on the Golioth platform are "Secure by default".</p>
<p>The post <a href="https://blog.golioth.io/yes-even-your-iot-prototype-should-be-secure/">Yes, even your IoT prototype should be secure</a> appeared first on <a href="https://blog.golioth.io">The Golioth Developer Blog</a>.</p>
]]></description>
		
		
		
			</item>
	</channel>
</rss>
