3 ms·
There is a boiler plate privacy page, but not with those technical details yet. First, storage isn’t encrypted and I can’t think of threat scenarios that requi
by m3nu 4y ago
There is a boiler plate privacy page, but not with those technical details yet.
First, storage isn’t encrypted and I can’t think of threat scenarios that require it, since we only use bare metal servers and control the drives. Wouldn’t add much benefit at the cost of higher CPU usage.
For your account, you can enable TOTP 2FA from Account > Password/2FA.
For our production servers, any admin access needs a hardware Yubikey.
- eptcyka 4y agoIf you control the drives, what will you do when old drives are cycled out? Will you just dump them in a bin for a letter agency to come and harvest my cat photos? IMO, FDE is easy enough to do, even if the users never get to do it themselves. It sort of protects the users from leaking their data in the event that a company goes out of business or someone breaks in to steal hardware.
- m3nu 4y agoUsually overwrite the data a few times before decommissioning the server. I’ll do some testing for the next server to see how much overhead FDE would add.