Skip to content

Implement forward secrecy by creating E3 keys #1148

@ryardley

Description

@ryardley

We currently save all encrypted state using a key derived from the passphrase that the node operator selects.
We are using eventsourcing now however so we should attempt to add some forward secrecy.
We should use E3 keys that are saved encrypted in a KV store but then purged once an E3 round is finalized

Metadata

Metadata

Assignees

No one assigned

    Labels

    ciphernodeRelated to the ciphernode packagesecurityRelevant to security

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions