webthings (mozilla iot)

Did I get it right?

Sometimes you rub your eyes and think, did I really get it?

This happened to me when I looked at mozilla iot aka webthings.

What is mozilla webthings really? You get software, where you can integrate different IOT systems (e.g. zwave, mysensors…) and have a UI where you can define rules.

I digged down to the api and didn’t find anything about security….

There are example sketches for esp8266 or esp32 to implement webthings that don’t need a gateway to webthings. When looking at the source code, you rub your eyes and ask:

Where is the enxryption of the communication channel (e.g. https)?

Where is the authentication (e.g. basic auth, or at least key hashed requests)?

Maybe I am blind (or I am getting to old…) … investigate yourself… ­čÖé

Comments are welcome…

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.