On Mon, 2025-11-03 at 16:39 +0100, [email protected] wrote: > The HSM should be backed up, too. Which is only possible by connecting > physically to it with a notebook and inserting an USB stick. > > Which begs the question: where do you source an USB stick with the same > trust-level as the 20k-a-pop HSM?
I'd say that you don't need a very secure USB stick. You just put the USB stick in a very secure safe that only two very trustworthy people can open together. Yours, Laurenz Albe
