Re: Re: encrypting credentials is done plain wrong
From: Simon Large <simon.tortoisesvn_at_gmail.com>
Date: Fri, 15 Apr 2011 10:51:27 +0100
On 15 April 2011 10:13, Daniel Klima <danklima_at_gmail.com> wrote:
I don't think so. He never mentioned the hard drive, this is purely
> File with passwords on hardrive has to be encrypted as it is longterm storage. THIS IS NOT AN OBFUSCATION BUT BASIC SECURITY MEASURE - you can gain access to hdd even offline and read any arbitrary sector,but access to process memory only as correct user with Debug priviledge or higher.
Yes we know all that. You have jumped into the middle of a (long and
http://tortoisesvn.tigris.org/ds/viewMessage.do?dsForumId=4061&dsMessageId=2718832
This is only about obfuscating RAM content, not disk storage which is
Simon
-- : ___ : oo // \\ "De Chelonian Mobile" : (_,\/ \_/ \ TortoiseSVN : \ \_/_\_/> The coolest Interface to (Sub)Version Control : /_/ \_\ http://tortoisesvn.net ------------------------------------------------------ http://tortoisesvn.tigris.org/ds/viewMessage.do?dsForumId=757&dsMessageId=2720075 To unsubscribe from this discussion, e-mail: [dev-unsubscribe_at_tortoisesvn.tigris.org].Received on 2011-04-15 11:51:36 CEST |
This is an archived mail posted to the TortoiseSVN Dev mailing list.
This site is subject to the Apache Privacy Policy and the Apache Public Forum Archive Policy.