An open community 
of Macintosh users,
for Macintosh users.

FineTunedMac Dashboard widget now available! Download Here

Previous Thread
Next Thread
Print Thread
SSH security
#24440 12/15/12 07:06 PM
Joined: Aug 2009
OP Offline

Joined: Aug 2009
I don't have filevault and really don't want to go with that. My MBP isn't set to auto login. So if my MBP gets stolen, they won't have my keychain, so that's most of my electronic passwords at least somewhat protected. My main password list is in an encrypted disk image whose password is in my keychain, so that has the same level of protection.

BUT, I recently got to thinking. What if my laptop is stolen, what about all the places I ssh to? There's nothing protecting ~/.ssh/id_dsa, and I have numerous ssh shortcuts in /usr/local/bin/. So someone that takes my laptop could freely ssh to those places.

I know I can establish a password for my private key, but again for convenience I don't want to do that. (besides being inconvenient, I use ssh/ssl in cron jobs frequently, that require no passphrase in the key) I also don't want to have to keep an encrypted dmg mounted.

So are there any other options? Any way to make ssh/ssl get the key from the keychain? or some other idea?


I work for the Department of Redundancy Department
Re: SSH security
Virtual1 #24444 12/17/12 05:19 PM
Joined: Aug 2009
OP Offline

Joined: Aug 2009
well I think I will just have to lump it for now. I've set up my passwords dmg to mount at login and stay mounted, and symlinked from ~/.ssh/id_dsa to the disk image, which will make those keys secure when I am logged out. (and I just realized, will also secure them on my backups)

I'm still looking for a better idea if anyone has one.


I work for the Department of Redundancy Department
Re: SSH security
Virtual1 #24445 12/17/12 05:27 PM
Joined: Aug 2009
Likes: 1
Moderator
Offline
Moderator

Joined: Aug 2009
Likes: 1
I can't help you, sorry, but I'll keep an eye out.


alternaut moderator

Moderated by  alternaut, cyn 

Link Copied to Clipboard
Powered by UBB.threads™ PHP Forum Software 7.7.4
(Release build 20200307)
Responsive Width:

PHP: 7.4.33 Page Time: 0.393s Queries: 20 (0.016s) Memory: 0.5797 MB (Peak: 0.6324 MB) Data Comp: Zlib Server Time: 2024-04-24 17:25:59 UTC
Valid HTML 5 and Valid CSS