Em 07/11/2015 13:11, Dimitry Sibiryakov escreveu:
> 07.11.2015 15:57, Vlad Khorsun wrote:
>>     I'd say it will be good to have ability to validate encryption key when
>> it is passed into the engine. I.e. not at every page read
> 
>    Say, a malefactor has algorithm, but not a key (which is usual situation 
> in OSS world). 
> In this case it is easy to forge a key that pass validation but still crash 
> the server.
> 

It should not crash even for non-encrypted non-database files. That is
the problem needing to be fixed then.


Adriano

------------------------------------------------------------------------------
Firebird-Devel mailing list, web interface at 
https://lists.sourceforge.net/lists/listinfo/firebird-devel

Reply via email to