On Sun, Jan 24, 2016 at 10:01:23AM +0300, Yazeed Fataar wrote:

> I hope this was not asked before. What methods can be used to secure the
> "tinc" config files? If for example using a VPS provider like digital ocean
> , how can one be sure that the local admins dont access your container and
> read the contents of the tinc config files? Is there a better solution ,
> should full drive encryption be used and dedicated servers?

You should consider any VPS compromised from the very start. Even
full-drive encryption on a dedicated server won't help unless you can
somehow make absolutely sure that someone with physical access to the
machine cannot access the encryption key or just log in. That is harder
than it sounds.

-- 
Met vriendelijke groet / with kind regards,
     Guus Sliepen <[email protected]>

Attachment: signature.asc
Description: Digital signature

_______________________________________________
tinc mailing list
[email protected]
http://www.tinc-vpn.org/cgi-bin/mailman/listinfo/tinc

Reply via email to