It is a truism that if the attacker can take the hardware away you
have a big problem.
Alex Caldwell has incorporated strong encryption into at least
some of the narrative in his tkFP application.
I have a trivial number of records that are stored as PGP
encrypted text, and a larger number that have been made, PGP
encrypted, and mailed to where they are stored as plain text.
I dn't think PGP is necessarily the right application, but as a proof
of concept, it suffices.
--
Adrian Midgley
Exeter
http://www.swis.net/midgley/