openssl hmac and key on the command line

Stephane Chazelas stephane at
Sat Jun 8 07:52:04 UTC 2024

2024-06-08 08:43:26 +0100, Stephane Chazelas:
> Would it be possible to have a: -macopt keyenv:varname and
> -macopt keyexenv:varname for instance to be able to pass the
> secret via environment variables instead (which on most systems
> are a lot less public than command arguments)?

I see someone at
with a similar concern suggested -macopt keyfile:file 


More information about the openssl-users mailing list