#private-key #secret-key #openpgp #pgp

sequoia-keystore-softkeys

A soft key (in-memory key) backend for Sequoia's private key store

8 releases (breaking)

new 0.7.0 Mar 7, 2025
0.6.0 Aug 27, 2024
0.5.0 Jun 4, 2024
0.4.1 May 20, 2024
0.1.0 Jan 21, 2024

#2608 in Cryptography

Download history 932/week @ 2024-11-13 463/week @ 2024-11-20 615/week @ 2024-11-27 397/week @ 2024-12-04 716/week @ 2024-12-11 186/week @ 2024-12-18 53/week @ 2024-12-25 128/week @ 2025-01-01 162/week @ 2025-01-08 218/week @ 2025-01-15 293/week @ 2025-01-22 266/week @ 2025-01-29 167/week @ 2025-02-05 205/week @ 2025-02-12 200/week @ 2025-02-19 189/week @ 2025-02-26

770 downloads per month
Used in sequoia-keystore

LGPL-2.0-or-later

52KB
1K SLoC

A soft key (in-memory key) backend for Sequoia's private key store.

The sequoia-keystore crate implements a server that manages secret key material. Secret key material can be stored in files, on hardware devices like smartcards, or accessed via the network. sequoia-keystore doesn't implement these access methods. This is taken care of by various backends.

This crate includes a backend that provides access to secret key material stored in files. These are called soft keys in contrast to keys managed by a separate piece of hardware.

If the keystore is configured to use ~/.local/share/sequoia as its data directory, then the soft key backend uses ~/.local/share/sequoia/keystore/softkeys. Specifically, it iterates over the files in that directory, and looks for binary encoded or ASCII-armor encoded OpenPGP Transferable Secret Keys in files ending with .pgp or .asc; other files are silently ignored.

$ ls .local/share/sequoia/keystore/softkeys/
1234.pgp  1234.pgp.rev  alice.pgp  alice.pgp.rev  F44B66C85C9B7B02AF2D52FDEFF613897AD9CE21.pgp

Dependencies

~17–34MB
~458K SLoC