Protecting private key on USB flash drive: how to?
    Faramir 
    faramir.cl at gmail.com
       
    Fri May  9 18:02:52 CEST 2008
    
    
  
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
vedaal at hush.com escribió:
> Faramir faramir.cl at gmail.com 
> wrote on Fri May 9 14:21:41 CEST 2008 :
> 
>> I am going to carry gpg in my USB flash drive, 
> ... I will be carrying my private key with me 
> ... I'd like to know the suggested way to keep the key safe.
> here is what i do:
> 
> [1] make a true-crypt container just large enough to contain your 
> secret keyring (minimum container volume is 19 kb)
....
> [8] before mounting the container,
> rename it back to what it was, without the .exe extension
  OMG... 8 highly complex steps... surely that will defeat any attempt
to seize my private key... I was thinking something like encrypting my
private key with gpgshell, and making it self extracting... Or to
compress with winrar (password protected, and with "encrypt filenames"
activated... passware recovery kit doesn't even know what to do with
these files), or something like that...
> truecrypt can be run in Traveller mode without being installed on 
> your computer
  Unfortunately, I still need admin powers to run it, even in traveler
mode, and the computer where I would use it just give me user rights...
  Thanks vedaal, I will keep this advice in case I start using a laptop,
but for now I can't use this solution (due my lack of admin rights).
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
iQEcBAEBAgAGBQJIJHWsAAoJEIISGkVDGUEO+AQH/AmwvKfioRKjnh4o9+dmHjpW
qjwtln6u08Rl2RyE9JeUmhlyFji5CUDSM3i07K+fhqMzrG8xFO0+ZGvOP6EkI2Bq
b7exNRCjSQJmnN2TXO1JurevJGVWO/McApQk3MVo8wHPFztM9ljbtcBrPcUgUmKu
wzNpxYSxu9s2vgto0imrUpg7b1IDllpoCIxAa0xUYDX7bH0/o/SMEyIbZm45YEos
UuLERJysW0V1VZLzbC080IopRDKPk+/GGMg5Rk/XpTUQJQ4KDk4xeS73hREUrCuw
lEWOplEXWnGfllr2tp5+1dFvIIQFcQNR7Uamq24wXf6lXVXK7uIuJeffuhWY0vg=
=rNyu
-----END PGP SIGNATURE-----
    
    
More information about the Gnupg-users
mailing list