From db1d86cdd82bfffc6628f6538d3ac19d7aa73abe Mon Sep 17 00:00:00 2001 From: Murphy Laptop Date: Mon, 2 Mar 2020 21:18:56 +0100 Subject: [PATCH] Added some additonal text describing alternatives that may be used --- README.md | 15 +++++++++++++++ 1 file changed, 15 insertions(+) diff --git a/README.md b/README.md index f3ba270..05bdf22 100644 --- a/README.md +++ b/README.md @@ -326,6 +326,8 @@ An entropy pool value greater than 2000 is sufficient. # Creating keys +## Using a temporary file system (Tmpfs) + Create a temporary directory which will be cleared on [reboot](https://en.wikipedia.org/wiki/Tmpfs): ```console @@ -334,6 +336,19 @@ $ export GNUPGHOME=$(mktemp -d) $ cd $GNUPGHOME ``` +## Use the Storage Device as backup and reusable enviroment + +As you may want to keep a offline backup of your keys as well as a clean enviroment to be set up easily, you also might consider to keep your USB-Storage device including the keys in a save place. Therefore, just set your desired GNUPGHOME-Variable: + +```console +$ export GNUPGHOME=~/gnupg-workspace + +$ cd $GNUPGHOME +``` +**Remember** You must store the device in a secure place afterwards or destroy it physically (smash, burn, shred etc.) + +## Harden your setup + Create a hardened configuration in the temporary directory with the following options: ```console