On 05/09/2017 07:54 PM, cooloutac wrote:
> On Tuesday, May 9, 2017 at 1:40:03 AM UTC-4, Andrew David Wong wrote:
>
> Why? No need to encrypt the database file if the whole VM is
> encrypted. Also, if your database file doesn't use authenticated
> encryption, that's another thing to worry about. You may also worry
> about file-level metadata leakage.
>
> > the database file is automatically encrypted. I just feel like vault
more likely compromised then the file if something is. but I could be
wrong. plus way less space. > > I think when we have paranoid mode it
will be better. >
Backing up using anything like qvm-backup is always going to be much
slower — and require the VM to be off —than any file-level alternative.
Plus, if you need to sync your keyring between different devices, that
eliminates the possibility of using qvm-backup in any efficient way.
--
Rudd-O
http://rudd-o.com/
--
You received this message because you are subscribed to the Google Groups
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email
to [email protected].
To post to this group, send email to [email protected].
To view this discussion on the web visit
https://groups.google.com/d/msgid/qubes-users/1baae202-000c-1ae1-9b09-c2e272ed4b85%40rudd-o.com.
For more options, visit https://groups.google.com/d/optout.