GPG decryption within shell scripts. - another option?

CL Gilbert
Wed Jul 30 14:45:02 2003

James R. Hendrick wrote:
| I agree that giving key passphrases to an automated process puts the
| burden of security elsewhere (like within the security of the system
| where the passphrase is stored for example).
| I disagree that it removes whatever security the passphrase gives.

by definition, automating the passpharase is the equivalent of removing
the passpharase.  Its there in the script in plain text.  if anyone can
access the key itself, then they can just as equally access the script.
~ So lets say the passpharase does not provide added security above the
key itself.

