Posted by Chung Leong on 05/01/07 20:51
On May 1, 4:44 pm, "David T. Ashley" <d...@e3ft.com> wrote:
>
> I guess also I'd need to wipe memory before the compiled C program
> terminates to get rid of any trace of the sensitive information (otherwise
> the memory might be discovered by other processes later).
If the FOB key passes through PHP, then it'll linger in memory in its
address space. I don't see any effective way you can wipe it in PHP.
[Back to original message]
|