[Cryptech Core] Automatic key zeroisation of keys in keywrap

Peter Stuge peter at stuge.se
Fri Dec 7 14:59:28 UTC 2018


Joachim Strömbergson wrote:
> The question is then what a proper lower bound is? Reset back to timeout
> is the easiest since it doesn't add another magic number. But would that
> be ok?

I think that's OK.

Is it easy to also add an explicit wipe, for when SW knows that a key
is no longer needed?


//Peter


More information about the Core mailing list