White Paper
Trusted Software Delivery: Secure Updates with The Update Framework (TUF)
This whitepaper explains how Axis uses The Update Framework (TUF) to secure software updates for Windows-based applications. TUF ensures authenticity and integrity through cryptographic signing, verification, and multi-key trust models. By separating roles and requiring multiple signatures, it minimizes risks even if parts of the system are compromised. The framework includes mechanisms for key rotation, freshness validation, and protection against replay attacks. Combined with tools like Notary and secure workflows for uploads and downloads, this approach safeguards the update process and protects users from tampered or malicious software.
