4 ms·
Free alternative: use one of several tools that implement Shamir's Secret Sharing Scheme to split your master password into chunks. You can create a bunch of ch
by teuobk 7y ago
Free alternative: use one of several tools that implement Shamir's Secret Sharing Scheme to split your master password into chunks. You can create a bunch of chunks and require that at least a certain subset of them be used to recover the password.
For example, you could encode your password into 10 chunks and require that at least 5 chunks be presented together to recover the secret. Any 5 chunks of the 10 (in this example) could be used, but it is mathematically impossible to recover the secret with just 4 or fewer of the chunks (in this example). Thus, you could spread those 10 chunks among 10 trusted friends, the idea being that they would recombine the chunks only in the event of your death. Moreover, if you are not yet dead, at least five of your trusted friends (again, in this example) would need to betray you for your secret to be stolen.
- mrdazm 7y agoWhat are some such tools that you know about/recommend? I've also considered this for Passbox but needed to start simply.
- npalmer 7y agoTake a look at Hashicorp's Vault. https://www.vaultproject.io/docs/concepts/seal.html https://www.vaultproject.io/docs/concepts/seal.html
- peterwwillis 7y agoNot the same, but you can use two-man crypto verification to make sure a file was signed/encrypted by multiple parties. Example: https://github.com/psypete/public-bin/blob/public-bin/src/security/twoman.sh https://github.com/psypete/public-bin/blob/public-bin/src/se...