|
|
|
|
|
by Latty
2515 days ago
|
|
I think the parent post was asking where someone would securely store a hardware device like a yubikey that, for example, contains the only copy of a root key—as opposed to using such a hardware device as part of a security system. |
|
You should align your storage choice to your contingency plan. For a lost root your contingency plan should involve distrusting and replacing the hierarchy underneath the root. To the extent that you wish to avoid executing the plan, buy a better safe so you are less likely to need the plan.
It is OK for your contingency plan to include "Go bankrupt and cease to exist" if you are any sort of corporate entity.