|
|
|
|
|
by matt_wulfeck
3426 days ago
|
|
Yes Canada is right. Asymmetrical encryption is what you want. You can bake the signature into all of your hosts that need it, that way they encrypt a file without needing to know how to decrypt it. Ask your third-party to supply a gpg public key over a secure channel, then it's very to encrypt files for them (and only them) to read. |
|
I'm personally curious about the best solution...
@Canada, if the "malicious"(untrusted?) server modifies the backup how could you decrypt anyway?