diff options
Diffstat (limited to 'doc/spec/proposals/103-multilevel-keys.txt')
-rw-r--r-- | doc/spec/proposals/103-multilevel-keys.txt | 8 |
1 files changed, 8 insertions, 0 deletions
diff --git a/doc/spec/proposals/103-multilevel-keys.txt b/doc/spec/proposals/103-multilevel-keys.txt index bdec44015..1dc2b02fe 100644 --- a/doc/spec/proposals/103-multilevel-keys.txt +++ b/doc/spec/proposals/103-multilevel-keys.txt @@ -5,6 +5,14 @@ Last-Modified: $Date$ Author: Nick Mathewson Created: +Overview: + + This document proposes a change in the way identity keys are used, so that + highly sensitive keys can be password-protected and seldom loaded into RAM. + + It presents options; it is not yet a complete proposal. + +Proposal: Replacing a directory authority's identity key in the event of a compromise would be tremendously annoying. We'd need to tell every client to switch |