Re: cleaning up keyrings

> Are you asking for an unencrypted area that only one application has
> read access to?  If so, you might be able to do something like that
> with SELinux (or AppArmor?), but I don't think it would be a very
> robust solution.

The Linux kernel key service can do this for session/user/user+session
and other key types, and you can use SELinux labels on it.


[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]