Global Feed Post Login
Replying to Avatar semisol

I do not get why some HWW manufacturers recommend entering a passphrase on *every boot*, compared to storing it on the HWW itself.

The entire point of a HWW is to securely store your keys, and the PIN is a much stronger mechanism than passphrase. (because of the limited tries)

So you could store the passphrase on the HWW without losing security, and keep it separate *for the paper backup*.

But some dumb vendors say for "additional security" enter your passphrase every time. Which is basically "we do not trust our PIN mechanism to be secure enough."

Such an implementation also increases the risk your passphrase gets stolen, as you use it much more frequently, and so will most likely store it in a more convenient but less secure location.

Avatar
aco 2mo ago

I’m liking the nerd talk I’m seeing here

Reply to this note

Please Login to reply.

Discussion

Avatar
semisol 2mo ago

I think the conclusion is that all of these schemes are unreasonably complex to reason about (and provide an illusion of higher security) and multisig just works.

Thread collapsed