Confirmation for cached passphrases useful?

Robert J. Hansen rjh at sixdemonbag.org
Mon Oct 18 04:47:24 CEST 2010


>  That may be true. However, remember feeling secure is part of security
> too, so if that feature doesn't break anything, and make people sleep
> better...

If a feeling of security comes as the result of *real security*, this is good.

If a feeling of security comes as the result of *no improvement in your situation*, this is bad.

>  And if one day the user finds it has been disabled somehow, the user
> might become aware of some malware in the machine...

By this logic every user should have a big piece of Scotch tape on the center of his or her screen.  If the piece of tape is ever missing, then you know someone's been tampering with your machine.




More information about the Gnupg-users mailing list