[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Key backup (was: How do I know . ..)
From: "Dr. D.C. Williams" <[email protected]>
The "spread spectrum" approach might well be indicated for some life-or-
death key security matters, but the vast majority of PGP users probably
don't need or want to play Spy vs. Spy with their friends to backup keys.
You use your friends now because off-site storage facilities are not
yet available. The software for distributed remote backup has yet to
make this operation transparent.
I recognize that you can't just leave your private keyring lying around
[physical storage mentioned]
I suspect that most private keys in the future will be held in PCMCIA
cards (initially) and then their smaller replacements. Backing up a
private key to these allows use of a safe deposit box.
If it's still "passphrase-protected", an attacker would a) have to know
what to look for
For scalability, most people will use some standard method, whatever
it is. This limits the search space of an opponent.
Eric