Rubens Kuhl <rubensk at nic.br> wrote:
> On Oct 17, 2012, at 2:14 PM, Tony Finch <dot at dotat.at> wrote:
> >
> > One interesting possibility might be to wire the keys into the FPGA
> > configuration, so it has to be re-flashed to change keys.
> That would require partially reconfigurable FPGA in order not to disrupt
> operations, so then 2x cells, but both are achievable nowadays.

If you are being paranoid then reflashing should happen offline so that
the key material is never available to the host software, even if it is
obfuscated into an FPGA configuration.

