• 1 Post
  • 60 Comments
Joined 1 year ago
cake
Cake day: June 20th, 2023

help-circle


  • A physical token only authenticates itself as “something you have” if there’s no way to extract the key from it. In practice non-hardcore deployments usually have a backup procedure but in principle, if you want multiple tokens, they should have separate keys. What you’re asking in simplest form involves storing the key on a server where it can potentially spill in a server breach or the like. If the key protects something very valuable, that can be dangerous. If it’s for your old Reddit account, you might decide to do it anyway.















  • If it’s from a memorable phrase, then the phrase has a lot of redundancy and it’s hard to estimate the actual entropy. Generating a random phrase and writing it on a slip of paper works for me. Keep the paper in your pocket and refer to it when you need to, instead of trying to memorize it. Once you’ve typed it into the computer a few times, you remember it automatically. At that point you can swallow the paper or use your favorite alternate secure disposal method ;).



  • Why does it matter if someone chooses to wear a mask or not? Maybe it’s a great excuse to avoid facial recognition software.

    Sunglasses are better for that. The idiots trying to ban masks aren’t trying to fight crime, they just want to normalize spreading illness.

    I wear a respirator whenever I’m in an indoor public space like a store, and I also don’t spend more time in those spaces than I have to. I go into the store and get what I need, but I generally don’t linger around browsing stuff. That means I probably buy less stuff, which is good for my wallet as well. But politicians hate that. They want us out there spending. That’s why they are trying to play down covid risks. So they hate mask and respirator usage since it reminds others that the virus is still out there.