[Cryptech Core] Automatic key zeroisation of keys in keywrap

Peter Stuge peter at stuge.se
Fri Dec 7 14:28:04 UTC 2018


Peter Stuge wrote:
> The timer should probably also be set to a lower bound on
> "reading the loaded status bit"

To clarify that I mean that when reading the status bit the timer
should probably be bumped up to some value if it is currently under
that value - so that software can assume that the key is available
shortly after having read the status bit as "is loaded".


//Peter


More information about the Core mailing list