Re: [PATCH v1.1 4/4] keys: add new key-type encrypted

2010-11-02 Thread Mimi Zohar
On Tue, 2010-11-02 at 10:30 +0100, Roberto Sassu wrote: > The buffer 'derived_buf' in the function get_derived_key() must be > allocated dynamically in order to make room for an arbitrary length > master key. > > Signed-off-by: Roberto Sassu > --- > security/keys/encrypted_defined.c | 15 +

Re: [PATCH v1.1 4/4] keys: add new key-type encrypted

2010-11-02 Thread Roberto Sassu
The buffer 'derived_buf' in the function get_derived_key() must be allocated dynamically in order to make room for an arbitrary length master key. Signed-off-by: Roberto Sassu --- security/keys/encrypted_defined.c | 15 +-- 1 files changed, 13 insertions(+), 2 deletions(-) diff --

[PATCH v1.1 4/4] keys: add new key-type encrypted

2010-10-11 Thread Mimi Zohar
Defines a new kernel key-type called 'encrypted'. Encrypted keys are kernel generated random numbers, which are encrypted/decrypted with a 'trusted' symmetric key. Encrypted keys are created/encrypted/decrypted in the kernel. Userspace only ever sees/stores encrypted blobs. Changelog: - wait unti