[18801] in bugtraq
Re: win32/memory locking
daemon@ATHENA.MIT.EDU (Werner Koch)
Thu Jan 25 02:47:35 2001
Mail-Followup-To: BUGTRAQ@SECURITYFOCUS.COM
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Message-Id: <20010124200743.B15272@alberti.gnupg.de>
Date: Wed, 24 Jan 2001 20:07:44 +0100
Reply-To: Werner Koch <wk@GNUPG.ORG>
From: Werner Koch <wk@GNUPG.ORG>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To: <0A3BB0EB963F2240A6A417216D2CDC3C0382C4@tsd2.qits.net.au>; from
jw@QITS.NET.AU on Wed, Jan 24, 2001 at 02:07:19PM +1000
On Wed, 24 Jan 2001, John Wiltshire wrote:
> Note that the PGP implementation uses a device driver (PGPmemlock.sys)
> to lock pages into memory and prevent them from being swapped out. I am
> unsure as to the motives of the GPG team if they have not implemented a
> similar feature, but smells like FUD to me.
Mainly a lack of time hinders the implementation of such a driver.
And frankly, I don't think it does make much sense to do so because
you can attack 99.9% of all Windows boxes by other and simpler means.
If a customer of mine would demand such a thing, I am going to write
it of course.
Werner
--
Werner Koch <wk@gnupg.org>
GNU Privacy Guard (http://www.gnupg.org)
Free Software Foundation Europe (http://www.fsfeurope.org)
[Please see X-* mail header for OpenPGP key info]