Skip to content

Commit 737d60b

Browse files
committed
[FAB-10218] store keys without execute bit
Keys aren't executable. Change-Id: Ide8d3e59f2189a1d26e971f49ab472b9743877db Signed-off-by: Matthew Sykes <sykesmat@us.ibm.com>
1 parent c6d0e6c commit 737d60b

File tree

1 file changed

+3
-3
lines changed

1 file changed

+3
-3
lines changed

bccsp/sw/fileks.go

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -288,7 +288,7 @@ func (ks *fileBasedKeyStore) storePrivateKey(alias string, privateKey interface{
288288
return err
289289
}
290290

291-
err = ioutil.WriteFile(ks.getPathForAlias(alias, "sk"), rawKey, 0700)
291+
err = ioutil.WriteFile(ks.getPathForAlias(alias, "sk"), rawKey, 0600)
292292
if err != nil {
293293
logger.Errorf("Failed storing private key [%s]: [%s]", alias, err)
294294
return err
@@ -304,7 +304,7 @@ func (ks *fileBasedKeyStore) storePublicKey(alias string, publicKey interface{})
304304
return err
305305
}
306306

307-
err = ioutil.WriteFile(ks.getPathForAlias(alias, "pk"), rawKey, 0700)
307+
err = ioutil.WriteFile(ks.getPathForAlias(alias, "pk"), rawKey, 0600)
308308
if err != nil {
309309
logger.Errorf("Failed storing private key [%s]: [%s]", alias, err)
310310
return err
@@ -320,7 +320,7 @@ func (ks *fileBasedKeyStore) storeKey(alias string, key []byte) error {
320320
return err
321321
}
322322

323-
err = ioutil.WriteFile(ks.getPathForAlias(alias, "key"), pem, 0700)
323+
err = ioutil.WriteFile(ks.getPathForAlias(alias, "key"), pem, 0600)
324324
if err != nil {
325325
logger.Errorf("Failed storing key [%s]: [%s]", alias, err)
326326
return err

0 commit comments

Comments
 (0)