Securely allocate buffers for storing decrypted key material

XMLWordPrintableJSON

    • Type: Task
    • Resolution: Won't Fix
    • Priority: Major - P3
    • None
    • Affects Version/s: None
    • Component/s: None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      In the driver spec we've decided we want to make a best-effort to store decrypted key material securely in memory. In libmongocrypt, we can store cached decrypted key material in buffers allocated securely (i.e. don't get paged to disk and are zeroed out when freed). We have server code that already does this apparently.

            Assignee:
            Unassigned
            Reporter:
            Kevin Albertson
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

              Created:
              Updated:
              Resolved: