Added some additonal text describing alternatives that may be used
This commit is contained in:
parent
2c2cec316c
commit
db1d86cdd8
15
README.md
15
README.md
|
@ -326,6 +326,8 @@ An entropy pool value greater than 2000 is sufficient.
|
||||||
|
|
||||||
# Creating keys
|
# Creating keys
|
||||||
|
|
||||||
|
## Using a temporary file system (Tmpfs)
|
||||||
|
|
||||||
Create a temporary directory which will be cleared on [reboot](https://en.wikipedia.org/wiki/Tmpfs):
|
Create a temporary directory which will be cleared on [reboot](https://en.wikipedia.org/wiki/Tmpfs):
|
||||||
|
|
||||||
```console
|
```console
|
||||||
|
@ -334,6 +336,19 @@ $ export GNUPGHOME=$(mktemp -d)
|
||||||
$ cd $GNUPGHOME
|
$ cd $GNUPGHOME
|
||||||
```
|
```
|
||||||
|
|
||||||
|
## Use the Storage Device as backup and reusable enviroment
|
||||||
|
|
||||||
|
As you may want to keep a offline backup of your keys as well as a clean enviroment to be set up easily, you also might consider to keep your USB-Storage device including the keys in a save place. Therefore, just set your desired GNUPGHOME-Variable:
|
||||||
|
|
||||||
|
```console
|
||||||
|
$ export GNUPGHOME=~/gnupg-workspace
|
||||||
|
|
||||||
|
$ cd $GNUPGHOME
|
||||||
|
```
|
||||||
|
**Remember** You must store the device in a secure place afterwards or destroy it physically (smash, burn, shred etc.)
|
||||||
|
|
||||||
|
## Harden your setup
|
||||||
|
|
||||||
Create a hardened configuration in the temporary directory with the following options:
|
Create a hardened configuration in the temporary directory with the following options:
|
||||||
|
|
||||||
```console
|
```console
|
||||||
|
|
Loading…
Reference in New Issue