Fwd: KWallet weaknesses (was: [PATCH] Make pinentry-qt read and store passphrases in KDE 3.2's wallet)

Tim Jansen tim at tjansen.de
Sat Dec 6 13:46:28 GMT 2003


On Friday 05 December 2003 19:59, Martijn Klingens wrote:
> It would also be nice to have some kind of ACL to restrict the wallet
> access for certain apps to certain folders in the wallet, or to
> automagically link a wallet to an app without having to add specific
> application support.

That wouldnt add any significant extra-security, because this won't prevent 
keysniffing to get the password or manipulations of KWallet. KWallet only 
protects you while it is closed.

bye...





More information about the kde-core-devel mailing list