From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from lists.gentoo.org (pigeon.gentoo.org [208.92.234.80]) by finch.gentoo.org (Postfix) with ESMTP id 8AB32198005 for ; Wed, 20 Mar 2013 04:33:35 +0000 (UTC) Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 90BDCE035C; Wed, 20 Mar 2013 04:33:21 +0000 (UTC) Received: from mail-ie0-f173.google.com (mail-ie0-f173.google.com [209.85.223.173]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (No client certificate requested) by pigeon.gentoo.org (Postfix) with ESMTPS id 571CFE02DF for ; Wed, 20 Mar 2013 04:33:20 +0000 (UTC) Received: by mail-ie0-f173.google.com with SMTP id 9so1635520iec.32 for ; Tue, 19 Mar 2013 21:33:19 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=x-received:message-id:date:from:user-agent:mime-version:to:subject :references:in-reply-to:x-enigmail-version:content-type; bh=0XjHJ0vnZQo0jKFZpnCtRQRTOmM8t5/BzaHjrCkV3jU=; b=kkmu1UXB24KeqEuy9FWNEW7uQB22oTq2G6McniagL3P5y2v9pL316+nN8NdtuMhObG 84hNqkXuH4nDrkyXlsUWPKHGntprrz/g1eVOXPFigRAGh5uXG7ro46icq74uhb7N2jh5 +YuvaWXSc8wu4u2+aWz4uDPtIjXhp44W5p2yJqcOOA3W6rS8LngTzJKXOzqrcm+VTPZn qYTzTl4OHaJ8DM21MfqUHRgaB1WxFXoV5xXQPf4rH5Bpjt1rDWaSC6qGcP9FAyTD8dFk /GbrjxS0ibkUQwbkTmIlQOuOtugVwpfvBhNxjInmMWgXR9cHBeHrIFeblY+JCVFE6MpY coMw== X-Received: by 10.50.10.161 with SMTP id j1mr3235584igb.45.1363753999508; Tue, 19 Mar 2013 21:33:19 -0700 (PDT) Received: from ?IPv6:2001:470:c5b9:beef:4eed:deff:fe93:63a0? ([2001:470:c5b9:beef:4eed:deff:fe93:63a0]) by mx.google.com with ESMTPS id gy3sm307908igc.10.2013.03.19.21.33.18 (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Tue, 19 Mar 2013 21:33:18 -0700 (PDT) Message-ID: <51493C09.5050302@gmail.com> Date: Wed, 20 Mar 2013 00:33:13 -0400 From: Michael Mol User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:17.0) Gecko/20130222 Thunderbird/17.0.2 Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-user@lists.gentoo.org Reply-to: gentoo-user@lists.gentoo.org MIME-Version: 1.0 To: gentoo-user@lists.gentoo.org Subject: Re: [gentoo-user] [OT] Time-lock USB stick References: <514925C3.8020900@gmail.com> <51492A76.4010202@iinet.net.au> <51492CE9.4030508@gmail.com> <514939A9.3030204@orlitzky.com> In-Reply-To: <514939A9.3030204@orlitzky.com> X-Enigmail-Version: 1.5 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="----enig2KISHUXAWKNJWCIKWOQFO" X-Archives-Salt: 0defb4c2-58eb-4c2c-9395-671aac45295a X-Archives-Hash: 50eed0a2f8c7e667e2e065c43eea8646 This is an OpenPGP/MIME signed message (RFC 4880 and 3156) ------enig2KISHUXAWKNJWCIKWOQFO Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable On 03/20/2013 12:23 AM, Michael Orlitzky wrote: > On 03/19/2013 11:28 PM, Michael Mol wrote: >=20 >> Not so much. The idea would be that you could power cycle the >> device to get access to it again. The device would be read for the >> keys at system bootup, but then would shut itself off after a few >> minutes to prevent the keys from being read from disk. (There's >> still the risk of them being read from the memory of the process >> using them, but that's slightly more difficult, and security is all >> about raising the bar.) >=20 >=20 > Eject the USB drive after five minutes? This raises the bar > significantly, to "has tried to send the 'close CD tray' command to a > USB stick before." That's sick, wrong and beautiful. I love it. :) ------enig2KISHUXAWKNJWCIKWOQFO Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.19 (GNU/Linux) Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/ iQEcBAEBAgAGBQJRSTwNAAoJED5TcEBdxYwQ2igH/A1OupFybQV83kEu+WQOX3fE 9ArbSzRRv3e8SKHg9EnAwoMwmcLKcQpVnzhfx90yrHH3rkfcJ4WRtMoTZsX56x5k DMoM4AVO+vq1tmFBMEC8PSSDnhWL5mU4f7lVkJtBj1LqSQTMurHRWolmiiApGLVB 4/MA7Tu6Qaymxk++jQ99kfyae9Lmc08mi+HW5OlrWeaP8npw6MIsUPzAF0LpJEQL 59Vyc/XTBvF5NU5mHCcHIUnH7MvZAjKMxIIvgQo8QqTCmVJ8zFcSFORInhy80Y6k sWkCWVApnrmNjpxaBKDGQoM8HsUf8XoafZwWVtIGd4PQDLpQTADoJZ95tXdgkno= =iAd7 -----END PGP SIGNATURE----- ------enig2KISHUXAWKNJWCIKWOQFO--