Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The backup, encrypted or otherwise, doesn't contain the actual keychain file itself, but rather a plist export of a subset of the keychain.

Things that are marked as kSecAttrAccessibleAfterFirstUnlockThisDeviceOnly are never included in this backup file. Google's GTMOAuth library uses this value for its keychain records.



Interesting.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: