30 ms·
1Password Travel Mode: Protect your data when crossing borders
- alexc05 9y agoI thought the trick was to back up the phone on one side of the border, factory reset / wipe, restore the phone on the other side of the border. Obviously that doesn't work for laptops - but for a phone it is in the realm of possible.
- jstoiko 9y agoI don't get how this would prevent border agents from asking to unlock / turn off travel mode. Why not make this feature tied to a geo-location? Like the hotel or the conference centre I will be attending.
- tehabe 9y agoAFAIK you can only deactivate the travel mode on the web profile. Of course it would be much more effective when you use it in the team mode. So that someone else has to deactivate the mode for you.
- mholt 9y agoThe implementation looks sound, and it's easy to use. Props to Agile Bits for making this feature a priority. So this is great! -- I think. My only concern is that if the authorities are already suspicious of you, and find no password vaults (or practically nothing in your password vault), they may just detain you until you reveal what you haven't disclosed to them. There's clearly a technical solution to the problem of protecting data across borders but they do not work so well under duress. Is there any technical way to convince an adversary you are not hiding anything else or did not delete something?
- whalesalad 9y agoSocial engineering. Confidence. At some point technology needs to be abandoned and you need to be a human being during those scenarios. Or simply don't have anything to hide. If you have a guilty conscience that is going to manifest itself in your body language and mannerisms.
- robschia 9y ago> Or simply don't have anything to hide. If you have a guilty conscience that is going to manifest itself in your body language and mannerisms. What if I am an anxious guy? What if I carry some business secrets? What if I don't want some TSA agent look at my SO pics I have on my devices/social media?
- whalesalad 9y agoBeing anxious is something you can work on. Business secrets are perfectly legal to carry across a border. Not wanting the TSA to look at your shit is something I can understand. I'd basically tell them to fuck off (in a more diplomatic sense) until it reached the point of being either blocked entirely from traveling or detainment. At that point you gotta ask yourself if the juice is worth the squeeze and turn back or play their game. Also this is more than just an issue with the Trump administration and the TSA... I don't travel to Canada any longer due to the treatment I have received at the border there.
- Kpourdeilami 9y agoJust out of curiosity, how's the treatment at the border in Canada?
- chrisdun 9y ago10 years ago I was working in Canada; couple of friends and I (Australian, British and Québécois) decided to go and ski in Montana for a few days. We had a few beers on the way down and stopped just before customs to drop off open cans before we crossed the border. Being 11pm, we were the only people at the crossing. As we circled round they decided something wasn't right (probably justified although not in their jurisdiction) - 4 hours later we were allowed into the US having been fingerprinted and our car searched on a ramp for what I assume was explosives or drugs. 3 days later we returned to the border travelling the other direction - the CBSA officer looked at the cover of all three different nations' passports before saying "I'm sure there's a visa in there somewhere, have a nice day."
- Klathmon 9y agoCould they try to go with the truecrypt method? Instead of removing the password data off the device, replace it with "junk" data. "Low security" accounts that you wouldn't mind the "adversaries" having, sacrificial accounts, or even just a randomly generated selection of fake passwords for a selection of accounts, etc... It still won't fully protect you (obviously a "targeted" adversary would know that you have an account at "X" with "Y" username and the password in your vault doesn't work for that so tie him up!), but being able to hand over something when being questioned might be better than nothing for some.
- sedatk 9y agoDefinitely not great. It would create much more suspicion to have 1Password installed and not to have any data on it. Just uninstall 1Password before travel and re install it back after customs. Travel mode is a way worse solution.
- lenocinor 9y agoThe article says you can choose which vaults to have available in Travel Mode. So you could just leave some vaults you don't care about in there.
- sedatk 9y agoEmpty/useless vaults aren't any better. Even if you went to the lengths of creating fake social profiles and adding their passwords to your fake vault, that's not any better either.
- codelitt 9y agoExcellent effort. I do wonder though, what is to prevent authorities from forcing you to just turn off travel mode? Is there a timer that you set? Deadman's switch? Geolocating? (The last 2 are not good solutions, but you get the idea) Edit: I missed this bit below: > even if you’re asked to unlock 1Password by someone at the border, there’s no way for them to tell that Travel Mode is even enabled. However, it won't take very long for authorities to wise up, know that 1password has a travel mode, and tell you to turn off Travel Mode, eh? Or am I missing something?
- blacksmith_tb 9y agoMy instinct is that if you have anything stored on your device, you're at risk crossing borders. So in my case, I would likely remove both the Dropbox app and KeePass, and then reinstall them on arrival. I suppose that would leave detectable traces, which could argue for using a burner phone, and then installing those two on arrival on it.
- misnome 9y agoIsn't the counter simple; they ask for your logins to the 1Password vault? I guess this just adds an extra layer of obfuscation. The most secure way I can think of is to either encrypt your drive (or wipe for travel and online restore once arriving) and physically mail the new password (or hand over to a trusted friend/store location) to the destination. Then there is no way of restoring at the airport. Of course, then they can just detain you indefinitely for not revealing the password you don't know...
- 31reasons 9y agoJust travel with a dedicated traveling phone and have your main phone mailed to your destination.
- dchest 9y ago> physically mail the new password Nobody will ever do this.
- xiphias 9y ago,,even if you’re asked to unlock 1Password by someone at the border, there’s no way for them to tell that Travel Mode is even enabled.'' It looks similar to hidden partition in TrueCrypt
- mcgrath_sh 9y agoAny subscription-based 1Password can be accessed from the web. Couldn't they just demand those credentials?
- eridius 9y agoOnly if you know them. I don't know about you, but I don't have my long random account key memorized (only my master password). You can't log into the website without that account key. Of course, you do need to be able to log in to turn travel mode back on, so if I were to use this I'd probably do something like set up a service to securely send me my account key after I'm expected to have finished crossing the border, or maybe just store it on a remote server that I have access to under the expectation that the TSA can't demand that I SSH into a remote server (especially one they don't even know about). Though if I'm traveling alone (instead of with my wife) I'd probably just call her and ask her to turn travel mode off for me.
- partycoder 9y agoA more accurate reality: https://xkcd.com/538/ https://xkcd.com/538/
- mikestew 9y agoAt, say, the US/Canadian border? No, not accurate nor realistic at all.
- lb1lf 9y agoThen again, you don't even need a $5 attitude readjustment tool when you can just shrug and say "Whatever. You are detained until you cough up what we want." - and are able to do just that...
- int_19h 9y agoThey can't detain you indefinitely without articulating a good reason, even as a non-citizen. What they can do is deny you entry. For citizens, not even that.
- easilyBored 9y ago* What they can do is deny you entry. For citizens, not even that.* Job lost. Father died without you seeing him. Thousands of dollars gone in lost ticket, reservations. That's more than enough for 99% of people. The other 1% don't even try to enter USA
- partycoder 9y agoThis happened at a US port of entry https://www.cnet.com/news/researcher-detained-at-u-s-border-questioned-about-wikileaks/ https://www.cnet.com/news/researcher-detained-at-u-s-border-... He didn't get hit with a wrench, but rather got all his stuff seized by the FBI.
- mikestew 9y agoHe didn't get hit with a wrench, but rather got all his stuff seized by the FBI. I don't know if you've ever been hit with a wrench, but those two things are nothing alike. Starting with the fact that the FBI might not have gained access to the data in your story.
- simonCGN 9y agoIt is very sad that it had to come that far
- netgusto 9y agoWouldn't an alternative "destroy everything" password be a good idea also ? Would work like this : When forced to enter / give the password to your vault, you enter/give this one, and everything the vault contains is wiped out before the vault is unlocked.
- crooked-v 9y agoThat's basically the definition of spoliation of evidence, if things were to ever escalate to civil or criminal proceedings.
- soverystatesly 9y agoThis qualifies already. 18 U.S. Code § 1519 defines it as "Whoever knowingly...conceals...with the intent to impede...the proper administration of any matter within the jurisdiction of any department or agency of the United States" So technically, entering travel mode for the purpose of hiding your stuff from border agents could be interpreted as a violation of that statute, regardless of whether there was an active investigation or legal proceeding. Of course, it would trigger a massive backlash if a federal prosecutor went after people for this. But it's there...
- jwr 9y agoI think there is a line to be drawn somewhere, and I don't know where — but taking this further, if I erase my laptop before going to the US and then restore it from a backup online, isn't this the same thing as „knowingly concealing with the intent to impede”? And what if I don't take the laptop at all? Am I „concealing” anything? Theoretically — yes. There has to be a limit to how far one can take the application of that law.
- maxerickson 9y agoIf you aren't aware of a matter concerning your data you can't intend to impede that matter by choosing not to transport your data on your person.
- petepete 9y agoIs travelling with confidential data really necessary? Wouldn't it make more sense for me to have a 'empty' notebook and store my data out of harm's way (but accessible via a VPN).
- confounded 9y agoI've come to the conclusion that this is the only reasonable technical solution. Don't travel with sensitive data, and openly explain that you don't do so. The frustrating part is the UX, and the fuss when you land. I've found that this works: - Burner android (burner account explicitly for travel) for music, podcasts, light browsing, etc. - Cheap ThinkPad for headscratching / hacking (work over SSH, keys on a Yubikey, IP in your head. YubiKey as second factor for password manager as browser extension (uninstall before the border))
- jaskerr 9y agoAny recommendations for a "burner android" phone?
- confounded 9y agoI'd just go to your local phone repair kiosk and see what they have lying around for cheap.
- ldonley 9y agoI'd just go on Amazon and find some cheapo phone like the BLU R1 HD. Just find one that is compatible with your provider.
- preinheimer 9y agoIf you're a company this is easy to manage. Give people laptops with nothing on them. Don't credential them until they phone your help desk from their hotel.
- Havoc 9y ago>Is travelling with confidential data really necessary? Yes. The whole travel with a clean laptop isn't feasible beyond a simple "access data remotely via VPN" scenario. Company laptops are often so full of custom software (bootloaders & up) that it's impossible to replicate/reinstall a working environment over VPN. They're crazy sensitive: e.g. On ours if you go too long away from the core network it freaks out and locks everything down. And recovering from that...well: I've literally had IT tell me that my options are 1) Fly to the nearest office and connect to core network 2) They fedex me a fresh laptop that has recently been connected to the core.
- gruez 9y agoCounter: the border agent asks "are you hiding any information from us?". answer yes, and they get you to disable travel mode. answer no, and you just committed a felony.
- sethev 9y agoSo are you required to have all the data that's ever been on your device at the time that you cross an international border? Are you required to copy passwords that were never in 1password onto your device before you travel? EDIT: Another way to put this: Is there an expectation that a border agent could, for example, ask for the password to my bank account? If not, how would there be an expectation that if that used to be on my iPhone it should still be there when I travel?
- Bartweiss 9y agoAre you a citizen? Because if not, the answer to all of this is "whatever the hell border patrol wants". As far as I know, you absolutely could be asked for your bank account password. You wouldn't be, because any agent asking would probably be fired to avoid a media circus, but it's not actually against any rule. Border patrol discretion for non-citizens is almost absolute. If you are a citizen, it's not clear that anything at all can be demanded, even logging into an account already on the device. It just hasn't been put to an unambiguous court challenge.
- sethev 9y agoThis issue seems to be a bit of a geek trap. Yes, border agents have a fair amount of authority. No, you're not required to twist your mind into a pretzel trying to decide whether what you choose to put on your device constitutes hiding the things you left off. If an agent is asking you something as specific as "did you enable travel mode in 1password" you've probably already triggered some suspicion. Some of the responses on this thread make it sound like there are people who would actually start explaining travel mode unprompted because they arrived at it by some twisted logic about what 'hiding' means.
- 9y ago
- MatthewWilkes 9y agoThis feature really should ask you to commit to your duration of travel beforehand. It's no use if you can be compelled to readd the data.
- javajosh 9y agoThat doesn't solve the problem, because you could be detained until the data is accessible again.
- MatthewWilkes 9y agoI admit, my threat model doesn't include indefinite detention at a border, but that is a valid concern depending in where you are going. Unfortunately, it's common not to believe people that say they don't know their password, otherwise the solution would be to just change your password and leave it at home without learning it. For me, the time lockout changes the claim you can make to an official from "I don't know the passwords, I have a record that I didn't bring with me, but can retrieve online" to "I don't know the passwords and have no ability to retrieve them while here". For me, that distinction is valuable and the benefits outweigh the risks. But everyone has different requirements and risk sensitivity.
- kortex 9y agoIt's beyond disturbing that we have reached the point where we are discussing this as a potential feature, and not a plot element of a dystopian scifi.
- IcyPickle 9y agoNo you can't be detained indefinitely (unless they have evidence to charge you with a crime). You could have your devices confiscated, and as a non-citizen, you could be denied entry.
- javajosh 9y agoI believe you can be detained indefinitely, and without probable cause, by border agents.
- jzl 9y agoThis is a nice feature, but ultimately if you are concerned with border agents requiring a phone search then you should just backup and install a fresh OS before traveling, then restore when you get back. Log into the minimal number of apps after you've entered the destination country, and optionally delete/logout of said apps prior to return travel if the return border crossing is also a concern. Admittedly if you use a password manager you might need still want to make use of a feature such as the one in this article, or install the password manager app after entering the country, or just write down the passwords that you will need and hide them somewhere unfindable with your stuff. On iOS about the only thing you would lose is your message history during the trip. It might be an annoyance if you wanted to play games that had non-cloud-based saved player state, but I can't think of too many other issues with doing this.
- cdolan92 9y agoThat may be a solution, but I'm never going to have the time to do that personally.
- jzl 9y agoBut are you concerned with border agents searching your phone? If you are then any time spent on this is time well spent. Although protecting your password manager is obviously of vital importance, there's a lot more to be concerned about sitting around on your phone if they can get in. There's also the general concern -- although I don't know if it's ever been proven to have happened anywhere -- of border agents installing tracking software / malware. They often take the phone out of sight for a while. This is probably more of an issue with Android phones but again if you are a journalist or human rights activist or anyone with legitimate reasons to be concerned, I would absolutely want to wipe the phone as soon as possible after a border crossing if agents had forced me to hand it over for inspection.
- Youareweakhn 9y agoThen stop complaining?
- r00fus 9y ago
- jackjeff 9y agoIn a true democracy this would be a pointless feature.
- kevincox 9y agoHow the law was created has nothing to do with it. I suspect that most of us would be surprised with how many US citizens support this idea.
- tlrobinson 9y agoWhy? What prevents a "true democracy" from enacting strict border controls?
- jackjeff 9y agoA democracy is not just a system of governance. The fact that a law was voted by congress means it is a republic, or a parliamentary monarchy. To be considered a democracy a country needs to provide its citizens more than the ability to elect a legislative body. There needs to be some basic freedoms and guarantees as well, like strong protections against unlawful detentions (habeas corpus) and unlawful seizures. Border control agents are provided exceptions to the normal rules. They can check your luggage for weapons or illicit goods without any probably cause. The logic behind these exceptions is that it has a deterrence effect on criminals that would like to bring in illegal goods. But going through your digital information makes no sense in that regard. If you were "up to no good" you would be able to send that information digitally without stepping foot in the country. Going through someone's private information is not about ensuring the safety of the country. It is an invasion of privacy and an intimidation tactic. The deterrence effect is not against criminals. The government uses this power to intimate people they do not like. For instance Loira Poitras and Glenn Greenwald are routinely subjected to this, for political reasons. Many muslims are subjected to this, simply because they are muslims. These are the tactics of non democratic regimes. It is sad to see them becoming more and more widespread in the US.
- mcv 9y agoThe world is bigger than one country. It's not for traveling to democracies, it's for traveling to totalitarian regimes. Sadly, that's where the US seems to be heading now. But it will also be useful for travel to China or North Korea.
- vit05 9y agoOne thing that I have always thought about is why Emails doesn't have disposable passwords. For example, you make 1 new password that you can use just one time. That way if you need to use unsafe PC from a hostel, you can log in with that password.
- jlgaddis 9y ago2FA
- jscott313 9y agoBackup codes are exactly that, though they're more in case you don't have access to your 2FA device.
- eggnet 9y agoYou're basically describing two factor authentication, when you have not authorized the particular computing device in question to skip it.
- robbyking 9y agoOr why we have passwords at all. Sites like Medium have moved to a passwordless model, where you're sent a login link to access your account rather than forcing you to remember or retrieve a password. https://blog.medium.com/signing-in-to-medium-by-email-aacc21134fcd https://blog.medium.com/signing-in-to-medium-by-email-aacc21...
- pavel_lishin 9y agoWhere would you send a link to log into your email?
- c0wb0yc0d3r 9y agoI was thinking it would be super cool if you could use something like https://krypt.co/ https://krypt.co/ and use public key private key. Sure, you would need that ssh daemon running on the computer, but I bet it could it could be retrofitted to use qr codes or something.
- benologist 9y agoI have some ideas I think will improve our security in this direction. Apple seeks to make it technically impossible to extract iPhone data and I've been wondering how we can do the same with using someone's credentials to enter the systems we build. One idea is to allow users to define how many concurrent sessions they can have so they can manage those slots and require something sign out before their credentials can sign in again. The other is to allow users to configure a schedule when their credentials work so you can block most of the world and probably most of most days too.
- ctrlaltdestroy 9y agoThe fact that this is a necessary feature today is a horrible thing, something I would never have thought about a few years ago.
- seanhandley 9y agoThey can only legally view the data you bring into the country on physical media in your possession as you pass through customs. Though it's not difficult to remove the app/vault and then reinstate it after customs...
- m3kw9 9y agoThe video/onboard tried too cute to make the Travel mode = off a confusing ambiguity by making just gray. If you don't want to waste people's time make things explicit.
- firebird84 9y agoWould it be equivalent if my (for example with LastPass) vault required a 2FA token to access, and I simply left the 2FA token at my house? I would in that case similarly be incapable of complying.
- stickfigure 9y agoThe right solution to this problem is, when traveling, always answer "no" to "may I search your laptop?" It sucks, and it many mean a lot of hassle ranging from confiscated equipment to being held at the border to being refused entry, but this is just one of the new risks of travel. Border security only gets away with this because people say yes. Companies need to make clear to their employees (and the public) that sharing passwords is a terminable policy violation. You should be able to say, honestly and credibly, "I won't unlock my laptop because I don't want to get fired."
- rosser 9y agoDo you honestly think customs agents care whether you'll get fired or not? US immigrations will permanently sever families that have been together for years or even decades with utter disregard for the emotional trauma they're inflicting. Your job matters exactly fuck-all to a CPB agent.
- noja 9y agoThat border agent is a real person, who is "only doing their job". So are you. It works both ways. If enough people say no, then after a hellish but hopefully short adjustment period, the policy will change.
- DanBC 9y ago> the policy will change. The policy might change to include cells at the borders where people are detained until they hand over login details or voluntarily decide not to enter.
- komali2 9y agoShould the slope become that slippery we'll have a much better reason to stand outside a legislator's office with pointy sticks than "I was mildly inconvenienced by the TSA."
- 9y ago
- specialist 9y agoI'm a very happy 1Password customer. Repeating my #1 feature request here, dovetailing this thread, please forgive. Problem: My logins keep breaking as websites evolve, change their forms, etc. Suggestion: Online catalog of login config/scripts. a) Pre-populate with "official" scripts for top 50 websites. Also serve as examples to show everyone how its done. b) Permit users to submit new scripts. c) Version these scripts. Use some kind of repo. d) Keep track of success rate, a la bugmenot, retailmenot, etc. Anonymize feedback, of course.
- deleted 9y ago[deleted]
- SurrealSoul 9y agoShame it has to come to this
- edejong 9y agoI don't understand. Why would people not just change their passwords by someone they know, travel, plausibly deny kniwlege of the password, and call the relative to unlock once crossed the border?
- dflock 9y agoBecause they don't want to get detained, be denied entry, have to travel home at their own expense, and be refused/blacklisted entry in the future, probably? If you're not a US citizen, there's no plausible deniability, due process or rights at the US Border; CBP agents can deny entry to whoever, for any reason at all - they have _very_ wide latitude and there is no appeal. Legal details vary by country, but this is pretty much the case at all borders, afaik.
- TheOneTrueKyle 9y agoThere is a lot of weak pussies in this thread
- gtirloni 9y agoMandatory "No Linux client" comment :| Does anyone have any insight if this is a pure business decision or there's something holding them back technically?
- mockindignant 9y agoThey can't even ship version of their Windows client with the ability to create/edit/delete local vaults. I think they are focusing on money before all else. They do still make a good product, but the direction they are moving towards eliminates their support for many threat levels that they had previously. Now you have to have a cloud account and you have to store your stuff there because their supposed "cross-platform" client cannot work on their own vault format on Windows. They might respond saying the version 4 of the windows client supports working with these vaults, but version 4 does not support OTPs so if you want to use the modern features without relying on their cloud storage...they don't care. If you go to their forums and read the response from the community about windows not supporting creating or editing of local vaults you will see they are by and large dismissive. So I think it's really about money and resources.
- deleted 9y ago[deleted]
- rukuu001 9y agoCrazy question: is it more effective to have your laptop couriered to you after you've arrived and cleared customs?
- kortex 9y agoLess chance of loss, theft, and breakage (depending on courier). So, probably.
- deleted 9y ago[deleted]
- brown9-2 9y agoYour laptop has to clear customs too, and it won't be in your possession with this plan.
- nictrix 9y agoIf the laptop is not in your possession when it has to clear customs wouldn't this mean they cannot ask you for the password and such, then this would limit what they could do? Though they could still seize it, but at least without the knowledge of passwords and social media.
- nictrix 9y agoI like the idea of shipping your devices, but what if you need your device during the trip up to customs? One thought comes to mind is ship a one-time passcode to your final destination and only that can unlock it at customs? It may appear you are actively hiding something from them and you end up in a lot of trouble. Or during the questioning, you don't hide anything and provide the address the one-time passcode is stored, which will use up valuable resources to go retrieve it. Maybe that would be too much trouble for them and let you go or you just added 8 more hours and expenses you have to pay to retrieve it.
- davidgaw 9y agoIt's a clever idea, but how long before border authorities simply order travelers to log on to 1Password and turn off travel mode, or be denied entry? I'm guessing not very.
- aoeusnth1 9y ago:-/ What we really need is plausible deniability - if they don't know you use 1password, they don't know to ask for it.
- Whitestrake 9y agoIs plausible deniability the right term here? Usually that's about the ability to deny having known about or authorised something after it's already been discovered. I'm not really sure how you'd refer to the concept "they don't know I have it, so they don't know to ask". Security through ignorance?
- aoeusnth1 9y agoI guess it's a type of steganography then.
- ATsch 9y agoA solution, and what I first thought this did from the headline is to lock you out of your account for, say 4 hours
- tuxracer 9y agosounds like a great way to get detained for 4 hours
- movedx 9y agoThis is a good point in my opinion. My thought on this whole situation is to simply not take my phone or laptop. I don't live nor work in the US, however, so I don't have the issues being faced by people in this thread.
- mtgx 9y agoI wish Android and iOS also had a more incognito/hidden "travel mode" than the current account profiles.
- throw2016 9y agoIts great that they have at least thought about this and developed something, but this just sidesteps the issue. Only dissidents in despotic regimes need to resort to these kind of workarounds for lack of other options. Why should citizens of a democratic country have to workaround anything? The solution to privacy, surveillance and overreach issues in democratic countries has to be political, and not technical.
- kevindong 9y agoOr: just delete the app before you get to customs and redownload after you pass customs. Simple, elegant, and fool proof.
- rosser 9y agoIf CBP knows you're a 1P user (which they hypothetically could since the NSA has read 1P's emails to you, a foreign user of that service), but you don't have the app installed when you attempt to enter, what makes you think they'll respond differently than they currently do to people whom they know have Facebook accounts, but delete the app from their device before attempting to enter the country, rather than allow the immigrations agent access to their feed?
- mazamats 9y ago"I forgot my password"
- rosser 9y agoThat will get you a cell in the UK, true or not. In the US, it will probably get you denied entry, possibly permanently, for "lying to a customs officer" (if a non-citizen), or the device possibly being confiscated if you're a citizen, (and a note in a file somewhere that says you've probably lied to a federal agent — particularly if they happen to catch any security camera footage of you stupidly using your device shortly after exiting the international arrivals area).
- kevindong 9y agoYou're absolutely correct that there's nothing stopping your proposed scenario from happening. That being said, it's extremely unlikely they'll do that because in order to do so, they would have to: 1) Intercept your emails 2) Store the fact that you're a 1P user 3) Match up your email address to you, as a person at the border 4) Stop you at the border for questioning 5) Force you to unlock your phone 6) Recognize that your phone does not have the 1P app installed 7) Force you to install the app + unlock it For certain people, they may do that. But for the vast majority of people, they will not. 1P does not enjoy the popularity that Facebook is at. In the western world, one can reasonably expect any random given person to have a Facebook profile. The same cannot be said for 1P.
- fapjacks 9y agoLINUX SUPPORT PLEASE. Seriously, please.
- tormeh 9y agoIf you travel for work, wouldn't it be better to just let your employer hold the password? When border security asks for data you truly cannot provide it. I think the only way to get around this shit is to have another person hold at least part of the key. Border security can't force you to lie to your employer on the phone, so they're not getting access.
- nihonium 9y agoI don't understand. Is this really a thing? I'm from the UK and never heard such a thing. Is this common in US? What are they looking for? Do they just pick someone randomly, login to the laptop and check emails and stuff?
- dflock 9y agoAs I understand it, they generally don't just aimlessly scroll through your email/facebook in front of you, then give your device back (although they can, if they feel like it) - they get you to surrender your credentials, then save these in their database; the contents of the accounts will then be downloaded automatically. Same for devices - they have you unlock the device, then take it away, plug it into a PC/whatever, which sucks down a complete image of the device. Then they give it back, if they feel like it. Obviously, if they do this with your email & facebook, they're also sucking in all your connections - your social graph: everyone you've ever emailed or has emailed you, everyone you're connected to on facebook.
- nihonium 9y agoThanks for the details? Is it a common procedure? Are they doing that to everyone coming to US?
- dflock 9y agoI think the answers to those are probably: No one really knows, and No, not yet - although they do now (optionally) ask for your facebook/twitter usernames when applying for an ETSA.
- theprop 9y agoI know many who buy an old laptop and ONLY use the Epic Privacy Browser or the TOR browser on it when traveling.
- YeGoblynQueenne 9y agoCould we have something like time-delay passwords? Like the time-delayed vaults they (allegedly) have in banks? Then you could say: "Even if I agreed to give you my password, you wouldn't be able to unlock my device with it for another 24 hours".
- Havoc 9y agoSure. If you want to sit in a holding cell for 24 hours.
- chrismorgan 9y agoThat’s just begging them to detain you for a day. Time delays only work for the entity in power. The bank has your money, you’ll just have to wait to get it. But the border people have power, not you; they can make you wait if they want.
- YeGoblynQueenne 9y agoI understand that even in the USA, to detain someone for 24 hours you need something like a warrant or some kind of special permission from the judiciary. I mean, if it's got to the point where the border force (?) can just detain you on a whim, I have a much better way to keep my data safe: by not flying to the USA.
- deleted 9y ago[deleted]
- beached_whale 9y agoIt would be interesting if service providers like Google, Microsoft, Apple, and Facebook started taking governments to court for unauthorised access to their systems.
- Havoc 9y agoIt's OK. The NSA already has access to their data. No biggie.
- beached_whale 9y agoThat is the other half isn't it. How can one trust that non-security experts can safely store your passwords in clear text on a networked system when no one else can do it safely
- deleted 9y ago[deleted]
- Bakary 9y agoMaybe she thought you were attractive?
- dang 9y agoPlease don't post like this here. We detached this comment from https://news.ycombinator.com/item?id=14405189 https://news.ycombinator.com/item?id=14405189 and marked it off-topic.
- faragon 9y agoTL;DR: Just avoid traveling to the USA. P.S. I love the USA, don't get me wrong. I hope some day the madness on the borders gets less paranoid.
- lacampbell 9y agoAnd the UK. And New Zealand. And I believe Canada. And...
- staticelf 9y agoAnd definately Australia and China.
- aldanor 9y agoWhich makes Ireland the only English-speaking country where you don't expect stuff like this to happen?
- staticelf 9y agoI don't understand why the language would matter? In Sweden we don't have this control and we speak better english than many americans.
- lacampbell 9y agoNo, you don't.
- bisRepetita 9y agoOne other way: change your password to a temporary one, give it to a trusted friend who changes it. You don't know the password, you can tell the truth to the border agent. Once you're out of their hands, ask for it back and change it again. Even if the friend is in the US, they cannot compell her/him to release it easily, US laws apply. There must be a way to also encrypt the new temporary password with 2 keys so that the trusted friend cannot access your encryped content without your own key.
- timedoctor 9y agoI don't see how any of these solutions help. At the US border agents routinely ask you to log into your email account and search your emails. If you refuse to comply it is much more likely they will not let you into the country. So they don't just search your laptop they try and search online accounts also.
- rafael859 9y agoTangentially relevant, I made a pam authentication module for Linux a while ago, that addresses this issue. It allows for the creation of duress passwords. Here is the repository: https://github.com/rafket/pam_duress https://github.com/rafket/pam_duress
- nictrix 9y agoThat is neat! I would think using it at a border crossing would constitute hiding something...right?
- IcyPickle 9y agoI'm a little sad that this would require me to use the 1Password cloud-service. I would never want my 1Password vault to be on any server outside of my control. While I completely trust agilebit's intentions, I feel that their cloud service adds a very major attack surface. Someone like the NSA would certainly be able to obtain copies of the encrypted vaults, which means that everyone's vaults are just one bug/backdoor in the cryptographic stack (remember Debian RNG bug?) away from being exposed. Hence, I only use WiFi sync for 1Password. It would be nice if 1Password added a sync option through my own WebDAV server. I'd then be happy to pay for a 1Password cloud account just for the TravelMode feature, as long as the vault data itself wasn't stored anywhere outside of my control. Having my own server would mean the the NSA (or whoever) would have to do a targeted attack on me personally, which is a whole different ballgame from everybody's encrypted vaults sitting on agilebit's servers. In the meantime, if I had to cross the US border (as a non-citizien!), I would probably delete the whole 1Password app from my phone before crossing, and then restore the entire phone from backup afterwards.
- avaer 9y agoWhen the features start rolling out, the market entrenches the status quo. Props to 1Password though; this is a symptom and they are not the cause. I guess the reasonable next step, when all the outrage has fizzled, is pre-screening. Pay for the government to have all of your passwords all the time, and save yourself the hassle.
- brokenmachine 9y ago>I guess the reasonable next step, when all the outrage has fizzled, is pre-screening. Pay for the government to have all of your passwords all the time, and save yourself the hassle. Lol, on what planet is that the "reasonable next step"?? Do they want to see my dick pics and login to my bank accounts as well? My poetry or whatever rambling I may write? Am I not entitled to any privacy at all? The actual reasonable next step is not to go to, or deal with, the US at all.
- lawl 9y agoI assume that was meant as "it's reasonable to expect this as the next step".
- brokenmachine 9y agoAh, ok. I get it now. I read it incorrectly.
- chx 9y ago"May I search your laptop?" "Certainly." "But... this is practically empty." "Yes sir. I FedEx'd my SSD to the destination." I have a small SSD in the primary disk in my T420s, it has just enough to get me through the flight. I keep the primary in the UltraBay with a simple adapter, takes one reboot and no tools to put it back in place. Done. Happy searching! I can't log into anything even if I wanted to because I physically do not have my password store https://www.passwordstore.org/ https://www.passwordstore.org/ with me. (https://github.com/chx/ykgodot https://github.com/chx/ykgodot I wrote this trivial script to automate yubikey neo with pass) Alternative: encode the entire primary disk https://github.com/cornelinux/yubikey-luks https://github.com/cornelinux/yubikey-luks and FedEx the yubikey. Yanking the disk is better, though.
- veidr 9y agoIt's a practical approach, and my comment here isn't necessarily aimed at you, chx (since I don't know your citizenship status), but I would add this entreaty to American citizens like me: If you ever get asked that question at the US border, please don't acquiesce to that request. They have the right to ask, and they even have the power to search it regardless of your permission, but despite an alarming drift towards a total surveillance, they have not established the right to force you to unlock/decrypt anything. I'm flying into SFO tomorrow, and I am taking similar precautions as chx so that my laptop doesn't contain any meaningful data[1]. However, if asked to unlock my laptop, I plan to say "No, of course I cannot do that; it violates the most basic security practices and I could and should be fired if I exposed sensitive company data in that manner." And then just sticking with it. It will be inconvenient, especially if they seize my laptop and detain me, but as citizens it is up to us to resist the normalization of behaviors that push the nation further towards the precipice of idiotism. [1]: As an American citizen, I have routinely done this when traveling to authoritarian nations like China; it's hard to express how outraged I am that my own country has degenerated to the point where sound security practices now require these kinds of procedures when traveling to the USA.
- was_boring 9y agoIs the goal to resist normalization of the behavior or is to get through the security theater?
- deleted 9y ago[deleted]
- teekert 9y agoI use Linux. I'm convinced that if I put a small Windows partition up (or another Linux install) and make grub boot into it automatically (with little delay) no one would ever notice. Does any one know if they check for multiple partitions at all? And Android can have multiple users, can you set up a new user and boot into that one automatically?
- safeharbourio 9y agowell, with some experience, border guards will learn to spot a non-ntfs partition, that windows dutyfully reports as unformated/blablah space, so that will eventually be caught, dont rely on this to actually protect you, its more of a sleigh of hand that may be easily spotted by the right guard.
- netsharc 9y agoTime to write one's own filesystem driver, that either hides this info or shows the disk as fully partitioned but empty NTFS partition, and when something tries to write onto it, throws a failure (so you can have e.g. 10 MB at the very front of the partition free, and the rest looks empty, but actually contains your Linux system) Another hack would be one's own BIOS, that lies to Windows saying "This disk is 100 GB", but given the correct unlock signal, will admit to the OS "this disk is 500 GB big".
- lloeki 9y agoWhat about dumping the partition table before simply removing the partition that matters? Just restore the partition table later. You could even grow the remaining partition without growing the actual filesystem, and hack something so that the FS layer reports the whole size. Or have both GPT and MBR that differ, offering two different views of the disk. If you're using lvm or btrfs you could also make a snapshot before removing all data then revert to the snapshot, and/or apply clever subvolume tricks like btrfs-convert does to keep the ext filesystem around [0]. [0]: https://btrfs.wiki.kernel.org/index.php/Conversion_from_Ext3 https://btrfs.wiki.kernel.org/index.php/Conversion_from_Ext3
- 9y ago
- deleted 9y ago[deleted]
- alexpw 9y agoIf you are refusing to enter the password, access to the device, or to disable travel mode, then good luck to you. IANAL, but the border agent doesn't care if the data is technically in the cloud, rather than on the device, because it restores when you unlock it. In addition to removing the data from the device, cheers, don't you also need to be able to honestly say you can not provide access to it? Ways to honestly answer, "not possible", and mean it: - schedule a time period where no password is accepted. - enable whitelist/blacklist zones via geolocation. - set a new password that you give to a trusted friend/coworker/spouse that you must contact to retrieve. Some combination of the above for ease-of-use, and ploys like emailing yourself the new password after a period of time for redundancy/safety.
- rando832 9y ago> the border agent doesn't care if the data is technically in the cloud In reality, they do. They are not asking you for every password you know and access to all the remote systems you have access to, and any that you can get access to if you ask someone, etc, etc.
- smallnamespace 9y agoFor this to really work, you need to also prove to a border agent that you can't access it. In that sense, Travel Mode sort of defeats the purpose -- all the border agent needs to know is that Travel Mode exists, and then ask you to turn it off.
- jolux 9y agoYeah, but you have to login to a cloud service to turn it off, which they can't necessarily force you to do supposedly.
- URSpider94 9y agoThere is no sign in the app that you are in Travel Mode. I suppose if you are well and truly targeted and they have a really knowledgeable specialist on-hand, they could know that Travel Mode exists and ask you to disable it. But, I think that's going beyond the boundaries of a border search, which is limited to searching things that you are actually carrying across the border.
- chronic940 9y agoI said I wanted to avoid terrorist attacks, not be near them.
- lacampbell 9y agoThis. I'm not visiting Western Europe anymore, the writing is on the wall.
- brokenmachine 9y agoIt's sad how much effect these isolated attacks can have. Hundreds of thousands dead from car crashes and smoking and whatever else, nobody cares, it's expected. A few homemade bombs, and that causes people to change their whole outlook on a country? It doesn't make sense. I wish there was some way we could not report on terrorist attacks, like we don't report suicides. Sensational news reports just blow things right out of proportion to their actual importance at the country scale. It's hard to do, and maybe not realistic, but there has to be some solution where these asshole terrorists don't win. And they win as our freedoms are limited as well. A few crazy people shouldn't be able to hold countries to ransom. I don't know the solution but it just sucks.
- Veen 9y agoThat's a bit like a European saying they're avoiding the US beacause of all the spree killings and school shootings. The risk is minuscule for any particular person.
- dang 9y agoWe detached this subthread from https://news.ycombinator.com/item?id=14405388 https://news.ycombinator.com/item?id=14405388 and marked it off-topic.
- tehwebguy 9y agoDetect CBP IP address? > There are 0 passwords in your vault.
- at1pe 9y agoIn Defense of Minor Attracted People or I Think it's Genocide. People lived short brutish lives in our ancient history, 30,000 years ago, often dying around age 30. If girls didn't get started reproducing just as soon as they hit puberty, they might not have lived long enough to see that their own children made it to puberty themselves; people had to reproduce early, the species literately depended on it. Therefore, it's no coincidence that the age of puberty is somewhere around half the age of 30. It also explains why there are so many people accused of being pedophiles, that's the way nature has made some of us, to be attracted to youth as a reproductive strategy. But rather than discuss why there seems to be so many “pedophiles”, we chose to just throw them in jail. Truth is, it's the way nature made them through evolution. We are still running on 200,000 year old software, and no stupid, recently created, feel good, socially constructed laws are going to change that. There was no supportive social services in those ancient times, and young girls who lost their families either died or grew up quick. The ones that were attracted to older men survived, and eventually reproduced. That is why you have girls who like older men, and men who like young girls. It's an adaptive strategy that worked in the past, simple as that. Men taking in young girls was natures answer to a social safety net. It also explains why the model industry has such young models, they know men are attracted to youth, beauty and neoteny (look up the word). No one really thought much of it back in the day when Calvin Klein was using a 14 year old Brook Shields as a model. Only recently are people outraged so much over so little. I really think it is so the deep state can use it as a way to control our politicians. Makes you wonder. Why persecute people for the way nature made them if they are not hurting anyone? No wonder the birth rate in western civilization is declining. Unfortunately, as always, religious prudes are standing in the way of sound reason but try to get your heads around the idea, it's a sound theory. It very well might have made the difference between the human race surviving, and not to acknowledge this possibility is just being unreasonable. The economy has changed but our biology hasn't. There is nothing wrong with being attracted to girls, and boys, around the age of puberty. It's just recently that young people can't find work, and people are stretching their child like behavior all the way into their 30's. Throwing people in jail for having an interest in young girls, and boys, around the age of puberty is just predatory policing for money, just like with drugs. Lawyers, politicians, law enforcement types, persecuting people for non-violent crimes that shouldn't even be crimes in the first place, like drugs, which is really just to defend the racketeering of the medical/phama industry, and to prop up their socialist make-work jobs. Being attracted to youth doesn't make one a monster, it's the way nature made us. What does make one a monster is destroying the lives of innocent men, and women, who did nothing more than follow their human nature. Not only does it destroy the lives of men when they are taken to prison but destroys the lives of the families, and pets, that depend on them. Think of all the poor animals that get hauled off to animal shelters,and get killed because their owners get put in prison for stupid, non-violent crimes, feeding the prison industry. If I was a cop, I would have trouble sleeping at night for thinking about all the lives I've destroyed. Morality is just an abstract concept, a social construct created by parochial minded religious people that are trying to make you submit to their antiquated group think. They often craft shaming language toward you, accusing you of having a “high hope for a low heaven." Evil and morality are points of view. Picture a cat playing with a mouse. To the cat, he is just playing with his food. To the mouse, the cat is the equivalent of evil it's self. This on the other hand, this is not evil; this is evolution adapting people to be attracted to youth as an adaptive strategy. It's the way we have evolved and is why there are so many supposed “pedophiles" everyone is freaking out about. This is the realist's perspective who lives by natural law and understands evolution - Life is a question, asked of the Universe, "Is this right?"...and answered by death if it isn't. We literally evolved, through evolution, to be attracted to youth and neoteny to survive! If the trait of being attracted to youth was not beneficial, it would not have been passed on! So, every one, stop being uptight prudes, know that everyone is different, and just because you don't like something doesn't mean that it isn't or wasn't at some point a good thing. Older people taking in younger people, as companions, was natures answer to a social safety net, there was no welfare for them when their parents died at an early age. Can you imagine using the strategy that women do today, of waiting 'till age 30 to have kids, back when there was no medical system of any kind, with your teeth rotting out of your heads! You people are silly for not seeing the obvious truths of our own biological evolution. Again, our biology hasn't changed, only the laws, and peoples brainwashed, reactive monkey, herd-like perspectives. Think for yourselves people! We are throwing people in jail for stupid non-violent crimes longer then people who attempt, or succeed, in murder because some stupid politicians were grandstanding for tougher laws that we didn't need. It doesn't even begin to make sense unless you consider it is being used to manipulate politicians through deep-state intimidation. Seems to me some arm twisting like that would explain a lot about the crazy decisions our politicians have made. I would say the age of consent of 12, like in Mexico, is about right for a legal cut off. Nature gave us every thing we need to consent to sex and that is the drive to have sex. I was a horny little bastard at 12, and so was everyone, of that age, around me. If you deny this, you are not only being disingenuous with yourself but everyone around you as well. Perhaps your memory is faulty, and doesn't go back that far? Do other animals wait for a certain age to have sex after they become able to sexually reproduce? No. It's just as stupid to put limits on it for us after one has reached puberty. People had jobs at those ages 100 years ago. My father would be 90 this year if he was still alive, and he told me that when he was 14 he earned a man's wage reading water meters. Everyone was younger in the past, on average, than they are now. In 1900, 18 percent of all American workers were under the age of 16. Child laborers often worked to help support their families. In colonial America, child labor was not a subject of controversy. It was an integral part of the agricultural and handcraft economy. Children not only worked on the family farm but were often hired out to other farmers. Boys customarily began their apprenticeship in a trade between ages ten and fourteen. Years ago each child you had made you richer, you could tend another acre of crops. Now, each child you have makes you poorer or if you are too poor to support them, burdens on the system. The economy has changed but our biology hasn't. We are keeping young people in school, which is essentially just giving them busy work to keep them out of the real economy, and treating them like kids longer and longer because the economy can't support work for them, as it has all been outsourced due to globalism. The system is all screwed up, and people are too concerned about being called names rather than speak out about the real problems in western society. I see a globalist system, which has shipped all our jobs over seas, and implemented silly laws restricting sex WELL beyond the ages of puberty. It looks more like a means of genocide to me. Those people in the middle east aren't exactly having a shrinking population like Europeans in the west are. Yes, the young people are still having sex because they have a high sex drive as nature intended. Nothing is going to stop that but instead of society pushing them into safe, monogamous, long-term relationships, they are making it to dangerous for that. Yes, these elites know what they are doing to us, and have been doing for a long time now. I think it's genocide. Grandparents were a rare breed until 30,000 years ago... when life expectancy grew http://www.dailymail.co.uk/sciencetech/article-2016759/Life-expectancy-Grandparents-rare-breed-30-000-years-ago.html http://www.dailymail.co.uk/sciencetech/article-2016759/Life-... 90 percent of a womens eggs are gone by age 30 http://abcnews.go.com/GMA/OnCall/women-fertility-falls-lose-90-percent-eggs-30/story?id=9693015 http://abcnews.go.com/GMA/OnCall/women-fertility-falls-lose-...
- brokenmachine 9y agoAlthough it's a great option, what's to stop them for asking for your 1Password account credentials? I believe they already ask for your social media accounts, don't they? That is ridiculous in itself. Why not ask for my bank logins while you're at it?
- bobwaycott 9y ago> Why not ask for my bank logins while you're at it? One step at a time.
- tiatia 9y agoUpload an encrypted image of your OS (Linux in my case) SSD on your server. Install an older legit version of windows (which was likely provided to you when you bought your computer). Add some nasty gay porn and you are all set for the border.
- ubikretail 9y agoThis might be troublesome in airports like Tel Aviv (personal experience). I'd rather encrypt and send my data through regular mail.
- kestal 9y agoDo you really trust cloud password storage services?
- marenkay 9y agoI'm kind of wondering how this all works in general when getting to the US. Considering my usual work contracts, complying with letting border control look into my fully encrypted work laptop would actually be a breach of my work contract. How do you guys handle this?
- Cthulhu_ 9y agoRefuse to go to the US unless provided with a safe / separate laptop that contains nothing that would cause a breach. I'd make it your employer's responsibility. If you have to go to the US on business, it's your employer's responsibility to help. Or to not send you to the US.
- betimsl 9y agoI've had this idea for so many years now: your gmail account has - let's call it - a master password and a throwaway password. Say you need to print something from a public PC, you just use that password that works only once, even if somebody key-logs it, you're safe.
- teekert 9y ago2FA is basically an ever changing 2nd password used 1 time. I use it everywhere it is supported. More info: https://www.google.com/landing/2step/ https://www.google.com/landing/2step/
- proaralyst 9y agoAdditionally Google will give you a set of (longer) `recovery codes' that can be used as one-time second factor passcodes.
- neillyons 9y agoI'm surprised this is even a thing. Do folks get asked for passwords at airports? What is the reason for this feature? Hope this comment didn't come across as negative. I'm a big 1password fan.
- ElDji 9y agoBin Laden has obviously succeeded removing freedom that american citizens were enjoying not so long ago.
- Sophira 9y agoI think this is an incredibly worrisome move on 1Password's part. Coming from the right motives, but ultimately it'll end up being used against us. Look at it from the perspective of the government. By bringing information from elsewhere into the US, you're importing it. It just so happens that the import security is tight in airports. So you use 1Password to delay importing this data until you can reach it through an alternative import method which is much harder to regulate - the Internet. What's going to happen is that they'll spend much more effort on tightening up the "import security" from the Internet. Things like SSL/TLS MITMing and deep packet inspection will be used to enforce compliance. Don't get me wrong. The ability to be able to do this is incredibly important. If they had marketed this as anything other than a travel mode specifically, and let users work it out themselves, it'd probably be better. But as it is, they've created something which is basically publicly stating that it exists to break import security, and as a result it's going to get a lot of attention from the wrong people. I worry that the existence of this mode this is going to be used by the government as an excuse to have a "Great Firewall of America".
- rawfan 9y agoThe difference is: with physical access, "they" are in control (during import). Importing over the internet, the user is in control (by using proper encryption). If they beat encryption, everything is over anyway.
- stefek99 9y agoArms race in post-Snowdown era. I would never imagine world in 2017 to look like this. "Black Mirror"
- speleding 9y agoA travel mode like this for Dropbox would be even more useful. Being able to mark certain directories as confidential so they can easily be removed and re-synced would be much better than deleting and re-installing the entire app.
- edanm 9y agoI'm struggling to understand all the comments here, but it feels like I'm living in an alternate universe. All of these questions like "but do the customs agents search for hidden partitions", etc... Who is it that is running into all these scenarios with border control? I've gone on international flights, including to the us, dozens of times, and have seen around me thousands upon thousands of travelers, and I've never seen anyone asked to open their laptop, no to mention being grilled on hidden partitions. Not that I'm doubting this ever happens. But from these comments, someone would get the feeling that this is routine, rather than a 1-in-an-X occurence for a probably very high X.
- schoen 9y agoAccording to a CBP press release from April, "in the first six months of FY17, CBP searched the electronic devices of 14,993 arriving international travelers, affecting 0.008 percent of the approximately 189.6 million travelers arriving to the United States." The release goes on to show that this is nearly twice as frequent as the equivalent period last year.
- 24gttghh 9y agoThe press release in question: https://www.cbp.gov/newsroom/national-media-release/cbp-releases-statistics-electronic-device-searches-0 https://www.cbp.gov/newsroom/national-media-release/cbp-rele...
- schoen 9y agoThanks very much, I had been e-mailed a copy and didn't have the link handy.
- cyphunk 9y agobecause... seriously: > the border agent asks "are you hiding any information from us?" Answer yes, always, because: I have client data I'm most certainly hiding from you on my computer because they'd in general be worried if it i didn't, also I have passcodes to friends mail servers I manager for them I'm hiding from you, also I'm hiding from you all the emails I've sent to my parents, I'm also hiding from you all the pics of my gonads I sent to my lover. So yes, I'm hiding information from you. What country is this anyway? <asks the person arriving to the US from Germany>
- webninja 9y agoI am a U.S. citizen and I flew last year from America > Qatar > India and from India > Qatar > America on a business trip. I was carrying two laptops. Neither laptop was searched, but they were put in separate trays under the x-rays to make sure they didn't contain physical explosives or hinder the x-raying of the food and clothes in my backpack.
- mm4 9y agomaybe instead of developing all these bend over backwards solutions to deny these data rapists from getting any pleasure out of it, maybe change the law to make them stop doing it in the first place... they are acting on the rules set in the system so change them.