Privacy With a 4096 Bit RSA Key — Offline, On Paper 232
HavanaF writes "Online backup is practical, but can it offer any privacy? The Dutch security company Safeberg developed an Offline Private Key Protocol, with an asymmetric key scheme. The protocol demands that the private (decryption) key be stored away from the 'source' computer, which presumably is 'too vulnerable.' The catch is that the private key needs to be fairly large to be secure: a 4,096-bit RSA key should suffice for some years. But how to store an 800-character key offline? Safeberg introduces a machine readable paper key, with the 4k-bit key crammed in a giant 2D Datamatrix barcode. This video on key strength tells the story."
How much added security? (Score:3, Interesting)
Smartcard ? (Score:2, Interesting)
Re:Don't use datamatrix (Score:4, Interesting)
The wikipedia article on DataMatrix (http://en.wikipedia.org/wiki/Data_Matrix#Patent_issues) seems to imply it is unencumbered--perhaps I'm misunderstanding something?
Re:How is this any more secure (Score:3, Interesting)
Ummmm.... (Score:4, Interesting)
Now, if you're really trying to protect some kind of historical record of how your data has progressed over time, then that would be a reason why access to the source computer still didn't get the intruder access to what you're trying to protect... but that's a very special case.
Dunno. Maybe I'm just missing the point.
Re:no thanks my Hard drive is too big (Score:1, Interesting)
I'll hold out (Score:3, Interesting)
... until there's a 640kbit key. 640k ought to be enough for anybody.
But seriously, it was just a few years back when we though 128bit keys were unbreakably long. Now 2048bit is standard, and about to get broken. 4096bit isn't enough right now. 16kbit is just about right, but that will get broken in early 2015.
Re:hide the key in a book: great idea! (Score:2, Interesting)
You convert it into a Base-52 or Base-26 representation, so all keybits are represented by ordinary letters such as A-Z (you might expand it a little to include common punctuation marks), and underline different characters on the page that correspond to digits of your key..
Also, you can XOR your 4096 key, by a truly random 4096 bit value.
Destroy the original key, and print the random number and the XOR result in two different books at completely different places.
You can XOR it a few more times, and divide the key into 5 or 6 pieces.
Then go to the library with a pencil one night, and (covertly) store a copy of your key in various books.
Making plenty of redundant copies of course, and visiting multiple libraries (for fear that part of your key would be unavailable due to someone else having checked out one of your bits).
Re:Another plausible scenario I have to watch out (Score:4, Interesting)
Void thine vellum!
Oust thine onion skin!
And that's about all I can come up with.
Except maybe "Shit the sheet", but that doesn't sound as nice.