From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from smtp1.linuxfoundation.org (smtp1.linux-foundation.org [172.17.192.35]) by mail.linuxfoundation.org (Postfix) with ESMTPS id 8CB41BB3 for ; Mon, 13 Jul 2015 17:13:02 +0000 (UTC) Received: from relay4-d.mail.gandi.net (relay4-d.mail.gandi.net [217.70.183.196]) by smtp1.linuxfoundation.org (Postfix) with ESMTPS id 2CCF619D for ; Mon, 13 Jul 2015 17:13:02 +0000 (UTC) Date: Mon, 13 Jul 2015 10:12:55 -0700 From: josh@joshtriplett.org To: Geert Uytterhoeven Message-ID: <20150713171255.GA4816@cloud> References: <20150710143832.GU23515@io.lakedaemon.net> <20150710162328.GB12009@thunk.org> <1436599873.2243.10.camel@HansenPartnership.com> <20150713140752.GA15582@gmail.com> <1436801960.6901.19.camel@HansenPartnership.com> <20150713160541.GC15582@gmail.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: Cc: James Bottomley , "ksummit-discuss@lists.linuxfoundation.org" , Konstantin Ryabitsev Subject: Re: [Ksummit-discuss] [CORE TOPIC] dev/maintainer workflow security List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , On Mon, Jul 13, 2015 at 06:46:42PM +0200, Geert Uytterhoeven wrote: > On Mon, Jul 13, 2015 at 6:05 PM, Konstantin Ryabitsev > wrote: > > - I'm willing to bet there are lots of removable storage floating around > > people's workdesks and travel bags that contain full copies of their > > homedirs for backup purposes (tell me it ain't true!). > > Given how easy it is these days to use luksformatted removable media, > there's not really an excuse for that. Or "tar ... | gpg", or duplicity, or any number of encrypted backup solutions. Keeping around any unencrypted copy of any of your keys is irresponsible. - Josh Triplett