• 1 Post
  • 257 Comments
Joined 1 year ago
cake
Cake day: June 16th, 2023

help-circle



  • Here’s one that probably nobody else here is doing. The backup goes on my mobile device. Yes, the thing in my pocket.

    • Mount it over SSHFS on the local network
    • Unlock a LUKS container in the form of a 30GB sparse file on the device
    • rsync the files across
    • Lock, unmount

    The backup is incremental but the container file never changes size, no matter what’s in it. Your data is in two places and always under your physical control. But the key is never stored on the remote device, so you could also do this with a VPS.

    Highly recommended.











  • What does the day-to-day operation of Pass compared to Keepass look like?

    Someone else can confirm but Keepass seems to use symmetric encryption, whereas Pass definitely uses an asymmetric key pair.

    This is why I gave up on Pass. Obviously it has its advantages or they wouldn’t have done it, but personally I find that this is too much complexity for something as critical as password storage. I want to be able to access the vault with a single memorized master password and nothing else. That is only possible with symmetric encryption.


  • Yes, I’ve had similar experiences recently and similar thoughts. Crossing land borders in Asia is more stressful than it was a few years ago. Lots of redundant security theater and biometrics everywhere. Of course, China is on another level to everyone else. At the immigration booth, your conversation with the official is now translated and subtitled in real time on both sides. And face ID is now so universal in China that I suspect the fingerprinting has become an afterthought. Everyone is being filmed and tracked pretty much everywhere. Not just cash but even ticket numbers are now redundant. Everything is attached to your personal ID and cameras decide whether you enter public buildings, train stations and so on. The day their government decides to really abuse all that power, they’re in deep trouble.

    In my experience the border thing is clearly worst in Asia, but with the exception of China it’s mostly just tiresome theater.

    By contrast I crossed into the Schengen zone from Turkey this summer and was surprised by how little security there was. But then I noticed the police all but dismantling a bunch of heavy goods vehicles in their search for illicit migrants. That was absolutely not security theater.

    PS. This subject got me thinking. I’ve seen a ton of borders because I like to travel by land. Different regions of the world definitely have different priorities at borders. In Asia it’s drugs and contraband. They care what’s in your bag. In Europe and North America, it’s you they care about: why you’re here and when you’re going to leave. In police states like China, borders are a golden opportunity to harvest a ton of data on suspect individuals. In much of the rest of the world, Latin America for example, borders are mainly just an employment scheme, bureaucracy for its own sake.


  • The issue is more general. When dealing with, say, apt, my experience is that nothing ever breaks and any false move is immediately recoverable. When dealing with Python, even seemingly trivial tasks inevitably turn into a broken mess of cryptic error messages and missing dependencies which requires hours of research to resolve. It’s a general complaint. The architecture seems fragile in some way. Of course, it’s possible it’s just because I am dumb and ignorant.