[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [cobalt-users] RE: PGP install version 263is
- Subject: Re: [cobalt-users] RE: PGP install version 263is
- From: Jens Kristian Søgaard <jens@xxxxxxxxxxxxxxxxxxxx>
- Date: Wed Jan 10 08:35:11 2001
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
> > Well, each user has his own key file. So just make sure, that the
private
>> key and binary seed is not readable by anyone else than the user himself.
> I have assumed the private key would be stored in a directory of the user
> something like /home/.pgp and with chmod +ow permissions. Not sure as to
Ehm, you problaby mean that they should be stored in the ~/.pgp/ directory,
which is a hidden subfolder to the user's home directory.
The permissions should disallow reading and writing for both group and
other. It should ofcourse allow these to the user himself.
> what you mean by the binary seed though. Is this the pgp file in
> /usr/local/bin?
Nope. The binary seed is a file created during keygeneration - it holds the
current seed for the random number generator. Is is reused often. It is not
high-risk that this file can be made public, but it should be kept secure.
--
Jens Kristian Søgaard, Mermaid Consulting I/S,
jens@xxxxxxxxxxxxxxxxxxxx,
http://www.mermaidconsulting.com/