11.08.2016 Views

Behind the Scenes with iOS Security

2aCt1ji

2aCt1ji

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

iCloud Keychain Backup<br />

Premise<br />

New credential—iCloud <strong>Security</strong> Code (commonly device passcode), <br />

unknown to Apple<br />

Generate strong random backup (“escrow”) key, wrap <strong>with</strong> KDF-derived key from iCSC<br />

Back up copy of iCloud Keychain secrets to <strong>the</strong> Apple cloud, encrypted <strong>with</strong> escrow key<br />

Send wrapped escrow key to Apple<br />

In case of device loss or new device, user can recover secrets <strong>with</strong> <strong>the</strong>ir iCloud password<br />

and <strong>the</strong> iCSC

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!