diff options
author | forbytten <108727302+forbytten@users.noreply.github.com> | 2024-10-26 02:51:35 +0000 |
---|---|---|
committer | forbytten <108727302+forbytten@users.noreply.github.com> | 2024-10-26 02:51:35 +0000 |
commit | 32e58e122ffc399bafa20c66b6de609d686215ec (patch) | |
tree | 19daab823cf9afc57084749ad7ef5a80814dd5f3 /passphrase.html | |
parent | Merge pull request #458 from drduh/18aug24 (diff) | |
download | YubiKey-Guide-32e58e122ffc399bafa20c66b6de609d686215ec.tar.gz |
Passphrase now passed to gpg from stdin via the --passphrase-fd 0 option instead of via the --passphrase option. The latter exposes the passphrase to observation by other processes on the system and the gpg man page includes a disclaimer for it: Don't use this option if you can avoid it. Although the README recommends a single user, ephemeral Debian Live environment, users may choose to ignore that recommendation so it seems best to protect them from themselves where possible.
Diffstat (limited to 'passphrase.html')
0 files changed, 0 insertions, 0 deletions