Who a machine is, how it proves it, and when its credentials die.
How three security systems that looked alike turned out to protect three completely different boundaries
Why we issue JBD crossing authority at the last responsible moment, what state-bound verification is meant to prevent, and what still has to be proven in testing.
A debugging story about a legitimate admission control answering the wrong question inside a one-time authorization gate.
A cautious design direction for observing use of a demoted credential without letting the decoy influence protected state.
The verifier had been asking the right question all along — and then it threw the answer away. An imposter who was always let in, a fix smaller than the bug, and why a check that never compares is the dangerous kind. Part 5 of the Authentication series.
The live crossing is not one question but three, asked at once by three readers who cannot see each other's answers — and the checklist was never beside the gate; it was the gate. Part 6 of the Authentication series.