|
|
|
|
|
by jondubois
3170 days ago
|
|
The thing about security is that there is a point where you end up locking yourself out. Locking your data to your hardware raises the question of what would happen if the hardware failed? Also at first glance this seems to introduce difficulties with scalability across multiple machines. Also it might make it difficult to switch between infrastructure providers. The cost of this approach should be mentioned as a footnote. Maybe the better solution is for society to support more small tech companies with smaller user bases that have fewer dissatisfied rogue employees to leak hashed passwords in the first place. The root of the problem is not technical, it's political. |
|
If possible, it's nice to keep an offline copy of your key material too. Maybe locked in a safe, gpg encrypted or something.