Hacker News new | past | comments | ask | show | jobs | submit login

> many keychain items can be stored in your iCloud keychain. However, your local machine can have its own keychain

Yes. That's pretty obvious to anyone who opens Keychain Access.

On the left you will see the following under "default keychains" :

    - login
    - iCloud
> Your computer password is used to unlock your local keychain, but it itself is not stored in your keychain.

Yes. That's a fundamental, and again obvious requirement. Your keychain has to be encrypted somehow, and this is (IIRC) derived from your user password.

Software developers can further secure keychain by using enclave tied keychain entries[1].

[1] https://developer.apple.com/documentation/security/protectin...






Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: