agens-no / EllipticCurveKeyPair

Sign, verify, encrypt and decrypt using the Secure Enclave
708 stars 114 forks source link

Create a better API for handling various devices better #27

Open hfossli opened 6 years ago

hfossli commented 6 years ago

It should be easy to configure for

Fallback to .applicationPassword etc should be easy to do and it should be hard to forget devices / setups.


hfossli commented 6 years ago

I think in general it is better to try to create a key with highest security and then fallback instead of up-front trying to configure and guess the devices capabilities.

hfossli commented 6 years ago

Just a note: Setting .privateKeyUsage alone yields -25293 unless the key is stored on secure enclave