
Professional Java Security : Symmetric Encryption Part 3
Key Storage
One of the primary difficulties in establishing good security through cryptography is key storage. In order for a key to be useful, it must be persistent. But by keeping the key around, we risk it being compromised. Let’s imagine that we want to encrypt some personal files on our computer so that no one can read them. We create a 448-bit Blowfish key and encrypt our files with it, thinking that our files will now be secure. But if someone were to get into our machine, they’d be able to read the key and decrypt the files. In order for the files to be safe, we have to protect the key that we used to encrypt those files.


