mirror of
https://git.notmuchmail.org/git/notmuch
synced 2024-12-22 17:34:54 +01:00
NEWS: cleartext indexing section includes session keys
These are part and parcel of the same feature, so include the overview here.
This commit is contained in:
parent
eff029de4a
commit
d09f41a7f4
1 changed files with 13 additions and 4 deletions
17
NEWS
17
NEWS
|
@ -43,13 +43,22 @@ Indexing cleartext of encrypted e-mails
|
||||||
It's now possible to include the cleartext of encrypted e-mails in
|
It's now possible to include the cleartext of encrypted e-mails in
|
||||||
the notmuch index. This makes it possible to search your encrypted
|
the notmuch index. This makes it possible to search your encrypted
|
||||||
e-mails with the same ease as searching cleartext. This can be done
|
e-mails with the same ease as searching cleartext. This can be done
|
||||||
on a per-message basis with the --decrypt argument to indexing
|
on a per-message basis by passing --decrypt=true to indexing
|
||||||
commands (new, insert, reindex), or by default by running "notmuch
|
commands (new, insert, reindex), or by default by running "notmuch
|
||||||
config set index.decrypt true".
|
config set index.decrypt true".
|
||||||
|
|
||||||
Note that the contents of the index are sufficient to roughly
|
Encrypted messages whose cleartext is indexed will typically also
|
||||||
reconstruct the cleartext of the message itself, so please ensure
|
have their session keys stashed as properties associated with the
|
||||||
that the notmuch index itself is adequately protected. DO NOT USE
|
message. Stashed session keys permit rapid rendering of long
|
||||||
|
encrypted threads, and disposal of expired encryption-capable keys.
|
||||||
|
If for some reason you want cleartext indexing without stashed
|
||||||
|
session keys, use --decrypt=nostash for your indexing commands (or
|
||||||
|
run "notmuch config set index.decrypt nostash"). See `index.decrypt`
|
||||||
|
in notmuch-config(1) for more details.
|
||||||
|
|
||||||
|
Note that stashed session keys permit reconstruction of the
|
||||||
|
cleartext of the encrypted message itself, and the contents of the
|
||||||
|
index are roughly equivalent to the cleartext as well. DO NOT USE
|
||||||
this feature without considering the security of your index.
|
this feature without considering the security of your index.
|
||||||
|
|
||||||
Library Changes
|
Library Changes
|
||||||
|
|
Loading…
Reference in a new issue