Bug: sensitive data written to insecure memory

Werner Koch wk@gnupg.org
Wed Apr 4 13:55:04 2001


On Wed, 4 Apr 2001, Florian Weimer wrote:


> Encrypted swap doesn't mean swapping to an encrypted block device.
> It's better to implement this at a higher level. So you can use
> per-process secret keys and discard the keys if the process ceases to
The Hurd is going to implement it in it's Paging server which the right place to do it. SCNR, Werner -- Werner Koch Omnis enim res, quae dando non deficit, dum habetur g10 Code et non datur, nondum habetur, quomodo habenda est. Privacy Solutions -- Augustinus