3 ms·
the old keys are deleted safely Assuming nothing has managed to redirect those unlinks for example...
by d0 13y ago
the old keys are deleted safely
Assuming nothing has managed to redirect those unlinks for example...
- andor 13y agoI guess you're right. The mechanism is forward-secure, which means for an attacker that tampering the logs is the first thing to do, not the last ;-) As soon as the attacker manages to extract the state of the key generator from memory at one point of time, the log entries from that and the following sealing periods can be modified and cleanly sealed.