Results 1 to 8 of 8

Thread: [SOLVED] How do you keep GnuPG Keys safe?

  1. #1
    Join Date
    Nov 2007
    Location
    São Carlos, Brazil
    Beans
    136
    Distro
    Ubuntu 10.10 Maverick Meerkat

    [SOLVED] How do you keep GnuPG Keys safe?

    I assume everyone keeps their keys somewhere safe, in case they had to fresh-install their operational system, or something unusual happened.

    Point is, how do you keep your keys safe?

    I had to fresh-install my Ubuntu and (didn't know exactly how PGP worked) didn't backup my keys, so I had to make a new pair. Now I want to back it up. I find keeping it on my pen drive, iPOD or something like that too insecure. What if I forget them at the college lab? Or at work? Where (or how) could I store my keys with maximum security?

    P.S.: I wish sci-fi underskin nanodrives were real now! Haha!

  2. #2
    Join Date
    Mar 2007
    Location
    Denver, CO
    Beans
    7,958
    Distro
    Ubuntu Mate 16.04 Xenial Xerus

    Re: How do you keep GnuPG Keys safe?

    There is no formula for this -- you need to guard your gnupg keys and then protect them with a very difficult password.

  3. #3
    Join Date
    Nov 2006
    Location
    40.31996,-80.607213
    Beans
    Hidden!
    Distro
    Ubuntu

    Re: How do you keep GnuPG Keys safe?

    I store my GPG keys on my server, because I actually use the keys to encrypt/decrypt stuff on the server, but it's there for a backup too. A thumb drive/floppy disk would work for me, since I keep careful track of my things.
    "Security lies within the user of who runs the system. Think smart, live safe." - Dr Small
    Linux User #441960 | Wiki: DrSmall

  4. #4
    Join Date
    Oct 2008
    Location
    Washington, D.C., USA
    Beans
    118

    Re: How do you keep GnuPG Keys safe?

    They're on an encrypted flash drive duct-tapped to my torso at all times.

  5. #5
    Join Date
    Aug 2008
    Beans
    Hidden!

    Re: How do you keep GnuPG Keys safe?

    Key management always poses challenges regardless of the type of encryption used. You should definitely do what kevdog suggested and use a strong passphrase. If you want more, you could use steganography, and/or keep it on an encrypted TrueCrypt container.

  6. #6
    Join Date
    Feb 2006
    Beans
    457

    Re: How do you keep GnuPG Keys safe?

    I use Truecrypt protected containers on several differing machines with some machines not even having Truecrypt installed. I also have them Truecrypt protected within the home private directory and on dvds dotted about the place.
    Last edited by tubbygweilo; December 1st, 2008 at 02:30 AM.

  7. #7
    Join Date
    Nov 2007
    Location
    São Carlos, Brazil
    Beans
    136
    Distro
    Ubuntu 10.10 Maverick Meerkat

    Re: How do you keep GnuPG Keys safe?

    Oh, well, OK then. It's not that I don't keep track of my things. I've never lost a pen drive. But things happen... Thanks, people.

  8. #8
    Join Date
    Apr 2006
    Location
    Scotland
    Beans
    1,225
    Distro
    Ubuntu 8.04 Hardy Heron

    Re: How do you keep GnuPG Keys safe?

    i have a backup of my keys on a usb pen in a safe thats bolted to the floor. the passphrases are in my head.

Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •