Key backup (was: How do I know . ..)

Eric Hughes eric at remailer.net
Wed Jan 18 08:13:26 PST 1995


   From: "Dr. D.C. Williams" <dcwill at ee.unr.edu>

   The "spread spectrum" approach might well be indicated for some life-or-
   death key security matters, but the vast majority of PGP users probably
   don't need or want to play Spy vs. Spy with their friends to backup keys.

You use your friends now because off-site storage facilities are not
yet available.  The software for distributed remote backup has yet to
make this operation transparent.

   I recognize that you can't just leave your private keyring lying around
   [physical storage mentioned]

I suspect that most private keys in the future will be held in PCMCIA
cards (initially) and then their smaller replacements.  Backing up a
private key to these allows use of a safe deposit box.

   If it's still "passphrase-protected", an attacker would a) have to know
   what to look for

For scalability, most people will use some standard method, whatever
it is.  This limits the search space of an opponent.

Eric






More information about the cypherpunks-legacy mailing list