Re: Cipher the private key in peers wg0.conf ?

2018-05-16 Thread Antonio Quartulli
Hi, On 16/05/18 22:06, Matthias Urlichs wrote: > On 16.05.2018 14:53, reiner otto wrote: >> Actually, in wg0.conf the private key is defined in clear text. Which allows >> dump of physical disk to grab it >> and to fake this client. > So? If you have physical access to the peer's (unencrypted) di

Re: Cipher the private key in peers wg0.conf ?

2018-05-16 Thread Matthias Urlichs
On 16.05.2018 14:53, reiner otto wrote: > Actually, in wg0.conf the private key is defined in clear text. Which allows > dump of physical disk to grab it > and to fake this client. So? If you have physical access to the peer's (unencrypted) disk you can do anything. Security is over. > Wouldn't it

Cipher the private key in peers wg0.conf ?

2018-05-16 Thread reiner otto
Actually, in wg0.conf the private key is defined in clear text. Which allows dump of physical disk to grab it and to fake this client. Wouldn't it be safer, to cipher the private key somehow ? ___ WireGuard mailing list WireGuard@lists.zx2c4.com http