113 karma · joined March 11, 2019
Your feedbacks are valuable! Thanks!
If you do not use Medium, you can read the blog on the repository: https://github.com/Dentrax/go-tilde-operator/
Find the issue proposal: https://github.com/golang/go/issues/46847 Find the implementation PR: https://github.com/golang/go/pull/46848
> If you can store the password securely can you not then also store the private keys securely?
You don't have to store the private keys securely. On the contrary, you can store your private keys publicly, if the decryption password strong enough.
If you want to decrypt keys in the pipeline, of course your decryption keys still need to be stored securely. Which is why I added some KMS providers in the use-case diagram. [1]
[0] https://github.com/theupdateframework/go-tuf/blob/master/enc... [1] https://raw.githubusercontent.com/Dentrax/cocert/main/.res/u...
Also I just published this on /r/golang if you do not mind. :)