Skip to content

GPG keypair generation from Heads, then copied to USB Security dongle #771

@tlaurion

Description

@tlaurion

Current customer concerns:

  • What do I do if I loose the USB Security dongle. Worst : drown USB security dongle in pool, toilet.
  • What do I do if I lock myself out of the USB Security dongle Admin PIN?

Solutions:

  • Have the keypair generated inside of Heads (/tmp) then offered to be copied to USB Security dongle with a big fat warning if destination backuppartition mountpoint is not encrypted? (I would deny such export)
  • Have the factory reset code also generate a Reset Code (that permits to unlock Admin PIN)

EDIT: implementation plan here: #771 (comment)

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions