Re: [PATCH 4/4] security/keys: zeroize key payloads before kdump
Jarkko Sakkinen <[email protected]>
| Newsgroups | org.kernel.vger.linux-integrity,org.infradead.lists.kexec,org.kernel.vger.keyrings,org.kernel.vger.linux-devicetree,org.kernel.vger.linux-kernel,org.kernel.vger.linux-security-module,org.kvack.linux-mm |
|---|---|
| Message-ID | <[email protected]> |
On Fri, Jul 31, 2026 at 11:50:11PM +0100, David Howells wrote: > I've no particular objection to this, though I'd prefer the name 'wipe' to > 'zeroize'. LOL, I responded exactly same before reading your response :-) So yeah, +1 to this. > > You should also wipe fscrypt, tls, rxrpc*, ceph and cifs spnego type keys and > maybe asymmetric type keys. > > David > BR< Jarkko