[Mailman-Developers] GSOC Project idea: OpenPGP integration

Stefan Schlott stefan.schlott at ulm.ccc.de
Thu Apr 25 10:36:47 CEST 2013


On 25.04.2013 00:14, Abhilash Raj wrote:

> 1) When a message is decrypted and then passed on between the queues, it
> creates a security threat for the cleartext message is being held in
> memory, even for a small time in between the runners.

The Mailman server holds the key to decrypt _every_ incoming message. So
if the server is compromised, a message temporarily held in memory is
the least of your problems :-)

Stefan.



More information about the Mailman-Developers mailing list