[guardian-dev] Gibberbot keystore format

Miron c1.android at niftybox.net
Wed Aug 15 01:08:22 EDT 2012


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 14/08/12 21:24, Miron wrote:
> On 14/08/12 12:59, Hans-Christoph Steiner wrote:
> ...
>
> > Then we'd just need to figure out how the import/export process
> > actually works, mostly in terms of how to securely copy the files
> > around.
>
> I was thinking of piping directly into APG for export (APG will let
> you email it). We can also register a specific extension so that on
> decryption APG automatically routes it to Gibberbot. I have to check
> if this is all done securely - i.e. that APG does not store plaintext
> on flash.

To clarify, the purpose of going through APG (or your GPG JNI effort) is
to ensure that encryption/decryption happens in memory and never touches
the flash.  It has nothing to do with PSST (although PSST might end up
with a similar RAM based flow for constructing / unpacking subkeys).

>
>
> > .hc
>

- -- 
Miron
http://hyper.to/blog/
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iQIVAwUBUCsuxpifazBIoRa1AQJBABAAmzhhDbn0QhyD1ZRFZkPd/kZpHG4Kz8mY
sI3tkx0jom2GyBTERN9p+R0nVXP1P0IPvxubDFmHq4ht62mxOmAm6LebXV3Wrio+
/2HQf3p6CzjuQsGsPWIOYVrxDT+f+h/OB5SHYuoCLf21HtZ8KjAEsTwK43NkMi7Q
dMkZhoCd+nH6wQWNOfe3CIUp1Xz060J8wDEtGO9oD8J6bl6uIMLAzF8D/qwFyCMu
vs8Qh25BuA03jbQhKACKs6i4iLC045SxNCmw+Hq4odCYgEIJx+CVP3PCCyN9qzE4
qhpwQEY22nJdxfAr5Ad4oshcfLxoSNPbJn1BsP7Ntc+FPHpgqSgaGu7R0EGClOSM
nlKJu5RJ/GgpCZtd80Eg2MzbHus4mVCg4xWDcRtKS4/Qcvv/rmKiRPS5JctCjxyH
jTWcdxrZ0BhvsoyhUztgSs4vLuSfhK1lWAUQgANaKLSeh2qXCYFvOEcKSTJdppH8
HPm42APwbLUeV1JwYzxk4x6rBCT+sWQa36L9k+5hIfDw8X/VgZ9Ub9oJ8zGeoj6V
LMlZLsBRxMKiUuw/mTm6PA7FCGom68uESq5iI2oH6MEL4UNCFBt8itOgIwPAuXoj
M7HYRtREiXQDS1LfRFZg+iOjUku06OI5XZEzjV05rRqZ1ydEnfScur+gIm1tbV1p
d4jipPjpDoY=
=lOLV
-----END PGP SIGNATURE-----



More information about the Guardian-dev mailing list