Похожие чаты

Look, you're a single person. You're running off-the-shelf software and

using off-the-shelf hardware. You're not the only one doing so, so targeted attacks with that are impossible. Not to mention that nobody cares about your keys. If you were to be running a CA then yes, then it starts to matter, and securely storing the CA keys is imperative. I operate some CA's and I can say with reasonable confidence that while the security policies are usually a bit different, those keys are also stored on off-the-shelf hardware. Not the same hardware as yours probably but still. And if you want to protect your key from anyone? Nothing stops you from storing it on a LUKS-encrypted flash drive and taking it out when not needed. That's what an airgap is. And for production CA's that usually means not turning on the CA server when not needed. Done! You can be confident that nobody can access your key. But does it really matter for a single person? No.

2 ответов

17 просмотров

keys are not protected in all steps and you can't be sure about all of your softwares and you also need to think about your hardware which is out of your control. anyways i won't trust and you are free

CA is a docker container htat is only turned on for signing requests

Похожие вопросы

Обсуждают сегодня

Господа, а что сейчас вообще с рынком труда на делфи происходит? Какова ситуация?
Rꙮman Yankꙮvsky
29
А вообще, что может смущать в самой Julia - бы сказал, что нет единого стандартного подхода по многим моментам, поэтому многое выглядит как "хаки" и произвол. Короче говоря, с...
Viktor G.
2
@Benzenoid can you tell me the easiest, and safest way to bu.y HEX now?
Živa Žena
20
This is a question from my wife who make a fortune with memes 😂😂 About the Migration and Tokens: 1. How will the old tokens be migrated to the new $LGCYX network? What is th...
🍿 °anton°
2
30500 за редактор? )
Владимир
47
а через ESC-код ?
Alexey Kulakov
29
What is the Dex situation? Agora team started with the Pnetwork for their dex which helped them both with integration. It’s completed but as you can see from the Pnetwork ann...
Ben
1
Гайс, вопрос для разносторонее развитых: читаю стрим с юарта, нада выделять с него фреймы с определенной структурой, если ли чо готовое, или долбаться с ринг буффером? нада у...
Vitaly
9
Anyone knows where there are some instructions or discort about failed bridge transactions ?
Jochem
21
@lozuk how do I get my phex copies of my ehex from a atomic wallet, to move to my rabby?
Justfrontin 👀
11
Карта сайта