aboutsummaryrefslogtreecommitdiffstats
path: root/Documentation
diff options
context:
space:
mode:
Diffstat (limited to 'Documentation')
-rw-r--r--Documentation/keys.txt19
1 files changed, 18 insertions, 1 deletions
diff --git a/Documentation/keys.txt b/Documentation/keys.txt
index b56aacc1fff8..203487e9b1d8 100644
--- a/Documentation/keys.txt
+++ b/Documentation/keys.txt
@@ -26,7 +26,7 @@ This document has the following sections:
26 - Notes on accessing payload contents 26 - Notes on accessing payload contents
27 - Defining a key type 27 - Defining a key type
28 - Request-key callback service 28 - Request-key callback service
29 - Key access filesystem 29 - Garbage collection
30 30
31 31
32============ 32============
@@ -113,6 +113,9 @@ Each key has a number of attributes:
113 113
114 (*) Dead. The key's type was unregistered, and so the key is now useless. 114 (*) Dead. The key's type was unregistered, and so the key is now useless.
115 115
116Keys in the last three states are subject to garbage collection. See the
117section on "Garbage collection".
118
116 119
117==================== 120====================
118KEY SERVICE OVERVIEW 121KEY SERVICE OVERVIEW
@@ -1231,3 +1234,17 @@ by executing:
1231 1234
1232In this case, the program isn't required to actually attach the key to a ring; 1235In this case, the program isn't required to actually attach the key to a ring;
1233the rings are provided for reference. 1236the rings are provided for reference.
1237
1238
1239==================
1240GARBAGE COLLECTION
1241==================
1242
1243Dead keys (for which the type has been removed) will be automatically unlinked
1244from those keyrings that point to them and deleted as soon as possible by a
1245background garbage collector.
1246
1247Similarly, revoked and expired keys will be garbage collected, but only after a
1248certain amount of time has passed. This time is set as a number of seconds in:
1249
1250 /proc/sys/kernel/keys/gc_delay