2024-06-08 08:43:26 +0100, Stephane Chazelas: [...] > Would it be possible to have a: -macopt keyenv:varname and > -macopt keyexenv:varname for instance to be able to pass the > secret via environment variables instead (which on most systems > are a lot less public than command arguments)? [...] I see someone at https://github.com/openssl/openssl/issues/13382#issuecomment-1181577183 with a similar concern suggested -macopt keyfile:file -- Stephane