On Sat, Sep 14, 2024 at 01:32:37PM +0200, Tomas Paukrt wrote: > > Please see the comment in the following patch: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=3d16af0b4cfac4b2c3b238e2ec37b38c2f316978 > > The goal of this change is to allow some users to use AES with hardware-bound keys from user-space without compromising others. In that case I would suggest introducing a flag so that the key can only be accessed through the keyring subsystem. Cheers, -- Email: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx> Home Page: http://gondor.apana.org.au/~herbert/ PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt