Re: dedicated live CD for PGP master key management

2016-10-10 Thread Daniel Pocock
This can now be used, command line only for the moment, as described in my blog[1] about it If anybody wants to help take this further please join the list[2] I set up for it Regards, Daniel 1. https://danielpocock.com/dvd-based-clean-room-for-pgp-and-pki 2. https://lists.alioth.debian.org/ma

Re: dedicated live CD for PGP master key management

2016-04-26 Thread Daniel Pocock
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 25/04/16 23:06, Christian Seiler wrote: > On 04/25/2016 08:54 PM, Daniel Pocock wrote: >> On 25/04/16 19:03, Christian Seiler wrote: Does the workflow make sense? >>> >>> In principle yes, however it doesn't quite fit with my the >>> work

Re: dedicated live CD for PGP master key management

2016-04-25 Thread Christian Seiler
On 04/25/2016 08:54 PM, Daniel Pocock wrote: > On 25/04/16 19:03, Christian Seiler wrote: >>> Does the workflow make sense? >> >> In principle yes, however it doesn't quite fit with my the >> workflow I'd like to use something like that for: my master key is >> on a two separate SD cards, and I onl

Re: dedicated live CD for PGP master key management

2016-04-25 Thread Daniel Pocock
On 25/04/16 21:51, Adam Borowski wrote: > On Mon, Apr 25, 2016 at 10:15:02AM +0200, Daniel Pocock wrote: >> There are various blogs guiding people to use a Debian Live CD for >> managing PGP master keys >> >> Has anybody thought of making a dedicated live CD image for this >> purpose, with some k

Re: dedicated live CD for PGP master key management

2016-04-25 Thread Adam Borowski
On Mon, Apr 25, 2016 at 10:15:02AM +0200, Daniel Pocock wrote: > There are various blogs guiding people to use a Debian Live CD for > managing PGP master keys > > Has anybody thought of making a dedicated live CD image for this > purpose, with some kind of PGP quick setup wizard and attempting to

Re: dedicated live CD for PGP master key management

2016-04-25 Thread Daniel Pocock
On 25/04/16 19:03, Christian Seiler wrote: > On 04/25/2016 06:38 PM, Daniel Pocock wrote: >> On 25/04/16 17:34, Christian Seiler wrote: >>> Am 2016-04-25 17:24, schrieb Daniel Pocock: On 25/04/16 16:23, Holger Levsen wrote: > On Mon, Apr 25, 2016 at 04:03:26PM +0200, Daniel Pocock >

Re: dedicated live CD for PGP master key management

2016-04-25 Thread Christian Seiler
On 04/25/2016 06:38 PM, Daniel Pocock wrote: > On 25/04/16 17:34, Christian Seiler wrote: >> Am 2016-04-25 17:24, schrieb Daniel Pocock: >>> On 25/04/16 16:23, Holger Levsen wrote: On Mon, Apr 25, 2016 at 04:03:26PM +0200, Daniel Pocock wrote: > I had already made up some live CDs for read

Re: dedicated live CD for PGP master key management

2016-04-25 Thread Daniel Pocock
On 25/04/16 17:34, Christian Seiler wrote: > Am 2016-04-25 17:24, schrieb Daniel Pocock: >> On 25/04/16 16:23, Holger Levsen wrote: >>> On Mon, Apr 25, 2016 at 04:03:26PM +0200, Daniel Pocock wrote: I had already made up some live CDs for ready-to-run VoIP and remote hands purposes, so I

Re: dedicated live CD for PGP master key management

2016-04-25 Thread Christian Seiler
Am 2016-04-25 17:24, schrieb Daniel Pocock: On 25/04/16 16:23, Holger Levsen wrote: On Mon, Apr 25, 2016 at 04:03:26PM +0200, Daniel Pocock wrote: I had already made up some live CDs for ready-to-run VoIP and remote hands purposes, so I can probably do some of what is required, but it seems li

Re: dedicated live CD for PGP master key management

2016-04-25 Thread Holger Levsen
On Mon, Apr 25, 2016 at 05:24:21PM +0200, Daniel Pocock wrote: > Another interesting idea may be having an application that runs in Tails > to download other people's keys from key servers, automatically using a > different Tor connection for each download. apt show parcimonie | $magic Description

Re: dedicated live CD for PGP master key management

2016-04-25 Thread Daniel Pocock
On 25/04/16 16:23, Holger Levsen wrote: > On Mon, Apr 25, 2016 at 04:03:26PM +0200, Daniel Pocock wrote: >> I had already made up some live CDs for ready-to-run VoIP and remote hands >> purposes, so I can probably do some of what is required, but it seems like a >> good idea to avoid duplicating

Re: dedicated live CD for PGP master key management

2016-04-25 Thread Holger Levsen
On Mon, Apr 25, 2016 at 04:03:26PM +0200, Daniel Pocock wrote: > I had already made up some live CDs for ready-to-run VoIP and remote hands > purposes, so I can probably do some of what is required, but it seems like a > good idea to avoid duplicating any other efforts in this area too. shouldn

Re: dedicated live CD for PGP master key management

2016-04-25 Thread Daniel Pocock
On 25 April 2016 14:55:07 CEST, Ian Jackson wrote: >Daniel Pocock writes ("dedicated live CD for PGP master key >management"): >> Some specific things that the live image could do: >> - verifying there is no network connection, no DHCP daemon, >> automa

Re: dedicated live CD for PGP master key management

2016-04-25 Thread Ian Jackson
Daniel Pocock writes ("dedicated live CD for PGP master key management"): > Some specific things that the live image could do: > - verifying there is no network connection, no DHCP daemon, > automatically shutting down if a network connection becomes active > - formatting 2

dedicated live CD for PGP master key management

2016-04-25 Thread Daniel Pocock
There are various blogs guiding people to use a Debian Live CD for managing PGP master keys Has anybody thought of making a dedicated live CD image for this purpose, with some kind of PGP quick setup wizard and attempting to enforce a sane and secure workflow? One page I came across suggested us