Re: Transient secrets

2022-07-07 Diskussionsfäden Steffen Grunewald
On Thu, 2022-07-07 at 11:16:33 +0200, Diego Zuccato wrote: > Now I only have to figure out how to reliably detect its presence during > install, then it's just matter of copying files. Give each USB key a (filesystem) label, and check for its presence in /dev/disk/by-partlabel - you could even ma

Re: Transient secrets

2022-07-07 Diskussionsfäden Diego Zuccato
The more I think about it, the more I convince myself that an USB key (preferably connected to the internal USB connector) could be quite a good compromise: cannot be stolen too easily (requires opening the chassis), can be installed w/o requiring special skills, is cheap, and stores "more than