How to best store sensitive information without a password manager?

I've been using the Revelation password manager for some time now to store sensitive material for family and work. It meets most of my needs, but it has some hefty GNOME dependencies and I'd really like to use something with a bit more flexibility. Is there a solution that can provide the following:
* serious encryption
* opened via password
* store lots of account info for personal use and clients
* ability to store notes of various lengths
* accessible from the console when necessary
I've tried a number of password managers and they're all lacking in some way--either the encryption isn't strong enough or they're X11-based.  I'd be happy with a bash function that ran a series of commands to encrypt/decrypt a text file or something similar. 
Any suggestions?
Last edited by thayer (2008-02-06 20:15:05)

DonVla wrote:
MrWeatherbee wrote:
Important: don't get too cozy with secure deletion utilities. Every one of the author's of such utilities warns of their usage with journaling file systems. Here is one example of how to simply expose the weakness on ReiserFS:
<snip>
While that test is more academic than anything else, other tools are available that don't require having prior knowledge of the file's contents. Foremost is one such tool, and I have used it with success in recovering "wiped" files from my own HDs (just testing).
really? i thought shred would overwrite the blocks on the hd which formerly consisted the file. so the file isn't existent at all. since i didn't made much thoughts about this stuff. maybe i'm wrong. (i don't even have a /dev/mapper/vg... though i'm using reiserfs)
Wipe, shred, srm (part of the secure delete toolkit) and similar tools all fail when used on journaling file systems (this may be dependent on what journaling mode is set on the filesystem). By default, ReiserFS (and ext3) are set to "data=ordered" mode, and that is what I have tested on ReiserFS. The 'shred' man page specifically states that for ext3, "data=ordered" should allow 'shred' to perform as expected on non-journaling filesystems. Wipe does not try to be so specific:
wipe man page wrote:Wiping over NFS or over a journalling filesystem (ReiserFS etc.) will most probably not work.
I only tested on ReiserFS in default mode (data=ordered), and I could recover files using 'foremost' as well as recover the contents of files using the much simpler 'strings' command (see my example from above). By the way, I am sorry to have confused you, but on my system '/opt' = '/dev/mapper/vg02-lv02' because I am using LVM on that drive. Also, the main reason I chose '/opt' (though any partition should do) is that on my system (and I suspect it is true for most Arch users who have a separate '/opt' partition) I have the least number of files there, thus allowing the 'strings' command to sift through fewer files.
Since "data=ordered" mode causes failure on ReiserFS and because 'shred' is the only such tool I'm aware claiming "data=ordered" mode should work with ext3, I would want to get clarification or perform my own tests to see if that were indeed the case. I don't use ext3, so I'll leave that up to somebody else to confirm.
Of the tools I tested, running 'sfill' (with specific options) after deleting the files was the only way I was prevented from recovering the files with 'foremost'. 'Sfill' essentially overwrites all the freespace. However, it is impractical to do this often as it takes quite a while depending on the size of the volume it is processing.
DonVla wrote:
MrWeatherbee wrote:Everyone has their own needs when it comes to security / privacy, but if you're going to 'shred' + 'wipe' a file when it really does no more than what could be accomplished with an 'rm' command, and if you really need the level of security that such an action implies, then maybe some other methodology is in order.
like which or what do you recommend?
Well, as I said, that all depends on what it is you are trying to secure and who it is that you're trying to prevent from getting at it. I only ran the secure-deletion utility tests because I had some time to do it and because there was a lot of conflicting information about exactly what worked and what didn't. I don't have anything "007" top-secret to hide however, just your usual banking and financial info. But, I still prefer to keep those types of documents on an encrypted volume (Truecrypt) since I already know that the GPG-type solutions have risks such as the ones being discussed here. And even without the testing, anything that involves leaving  behind or creating a document in plain text during the encryption / decryption process seems wrong-headed from the start and should only be used when no other means are available.
Just my opinion, of course, and as you have seen in this thread (and in other similar threads where the same people usually chime-in ), everyone has his threshold of what is acceptable. In some cases, decisions were made knowing what the trade-offs were, and in some cases, others didn't understand that what they were doing was less secure than originally thought. As long as you are well-informed, the decision is easier to make for your own purposes.

Similar Messages

  • I want to create a form that I can change at an instance that will store the information without replacing it

    I want to create a form that I can change at an instance that will store the information without replacing it: Here are examples of what i have:
    This is the form:  The True/False in column B are actually check boxes
    Date
    Job Name
    Start
    End
    Hours Worked
    Per Diem
    Wednesday, Mar 5, 2014
    Duke University
    7:30 PM
    2:30 AM
    7.00
    Arellano, Paul
    TRUE
    Wednesday, Mar 5, 2014
    Duke University
    7:30 PM
    2:30 AM
    7.00
    0.00
    Blackwell, Zach
    FALSE
    Christian, Charles
    TRUE
    Wednesday, Mar 5, 2014
    Duke University
    7:30 PM
    2:30 AM
    7.00
    0.00
    Christian, John
    FALSE
    Currence, John
    FALSE
    Curtis, Brandon
    FALSE
    Hawkins, Tyre
    FALSE
    King, Corey
    FALSE
    Nunez, Jose
    FALSE
    Rangel, Antonio
    FALSE
    Rice, Eric
    FALSE
    Salgado, Ricardo
    FALSE
    and the sheet that the index to looks like:
    Saturday, Mar 15, 2014
    Rice, Eric
    Providence College
    9:00 AM
    7:30 PM
    10.50
    1
    Saturday, Mar 15, 2014
    Rice, Eric
    Virginia Beach
    7:30 PM
    2:30 AM
    7.00
    Saturday, Mar 15, 2014
    Salgado, Ricardo
    0.00
    Sunday, Mar 16, 2014
    Arellano, Paul
    Providence College
    7:00 AM
    8:00 PM
    13.00
    1
    Sunday, Mar 16, 2014
    Blackwell, Zach
    0.00
    Sunday, Mar 16, 2014
    Christian, Charles
    0.00
    Sunday, Mar 16, 2014
    Christian, John
    0.00
    Sunday, Mar 16, 2014
    Currence, John
    Providence College
    7:00 AM
    8:00 PM
    13.00
    1
    Sunday, Mar 16, 2014
    Curtis, Brandon
    0.00
    I want to be able to fill out the form and it place itself into Sheet 1 without changing everytime.  I can index the array from the form, but it changes everytime.

    You think it would be the other way around.
    Just speculation, but forms probably came to iOS first because of likely use for data entry in the field that syncs back to the Mac.  On a small screen with a touch interface, forms make inputing values easier.
    On the Mac, with its bigger screen, typing directly into a data table often works well enough.
    SG

  • HT1918 Created an apple I'd using a wrong e-mail address. Can't access the e-mail to varify the Apple ID in order to be able to change the account settings. Any idea how can change the account information without having to varify the account through the e

    Created an apple I'd using a wrong e-mail address. Can't access the e-mail to varify the Apple ID in order to be able to change the account settings. Any idea how can change the account information without having to varify the account through the e-mail?

    You are trying to find a loophole to circumvent a basic rule that prohibits the transfer of purchased content from one Apple ID to another.
    Content tied to an Apple ID are bound to that Apple ID forever. You can not merge or trade accounts. Well, not (officially) anyway...

  • How to safely store confidential information?

    I want to take an old PowerBook 12" with OS X 10.4.11 with me on holiday to surf the web using WLAN, check e-mails etc.
    How can I store confidential information.
    * user logins and passwords
    * private data I want to take with me and I want to work on (files)
    Does an encrypted disk image make sense?
    How do I have to set it up, when I do not only want to read the files there, but save /edit them?
    What other alternatives are there?
    Kind regards
    beckmart

    The thing that worries me about bukling items in a disk image is I believe all your eggs are in one basket. Others feel free to correct me but I believe putting 10 files in one disk image is basically making a single big file out of them.  Should that file become corrupted then everything is blocked.  Let's say you had a 10MB disk and 10 one MB files. Let's say a 1kB error appears on the drive. With 10 files one of them that uses that spot becomes corrupted but the other 9 are still okay. With a single 10MB file the whole thing includes that error area and as a result the whole file is perceived as bad.
    Some individual applications have encryption, though the security level on some has been questioned.
    Apple used to have an encryption tool back in pre OSX days but alas it is no more. According to http://osxdaily.com/2007/03/07/ask-os-x-daily-how-can-i-password-protect-a-file/ the zip utility in Terminal can encrypt an individual file. However, most people find Terminal a bit cumbersome. I suppose it would be possible to interface this as a more friendly utility via Automator or and Applescript...

  • HT5509 How can I disable guided access without a password on my iphone

    How can I disable guided access without a password on my iphone? Please help. I can't use Find My Iphone and touch screen.

    See: http://support.apple.com/kb/HT5018
    The easiest way is to connect the phone to your computer, click on its name, and click the "Configure Accessibility..." button on the Summary screen.

  • How to create a user account without a password

    how do you make a user account without a password!

    Hi Kappy,
    i checked out your bio and posts. would you be able to give me some guidance with respect to a recent post of mine. I'd appreciate any help you may offer.
    with respect to the password question, an added point may be to suggest a strong and secure password. i'm still baffled by the poor passwords in use by some of the people i know personally - and their smart individuals too.
    thanks in advance.
    blue.falcon

  • Is it at all possible for a program off the computer to get password information from the password manager?

    With all of the discussion about needing an "external" password manager (outside the browser), and recent demonstration about how much information can be gotten about web browsing, IP addresses, physical location (at least down to the city), etc., I am concerned as to whether it IS safer to use a 3rd party password manager instead of the one in Firefox.\
    ed

    If you use a Master Password that is sufficiently strong then you should be safe.
    * https://support.mozilla.org/kb/create-secure-passwords-keep-your-identity-safe
    * http://en.wikipedia.org/wiki/Password_strength
    *https://www.microsoft.com/security/pc-security/password-checker.aspx
    If you do not use a master password then having access to key3.db and signons.sqlite is sufficient to have access to the encrypted names and passwords by placing the two files in a Firefox profile folder.

  • How to best store images with Aperture's Library?

    I do not understand, after all this time, how the Aperture library works. I've done a little research online but I cannot see anything which satisfies me. The problem is that I have a 500GB HDD and its getting full, with Aperture taking up roughly 300GB of it!
    I find that I have a library with 317.91GB in it and the folder has 47k images, but my library has over 100k, so are the rest inside the library? Am I doubling up the amount of imagery with them organised in my Photos folder and a big Aperture library?
    I'm not sure if I need the two or wether I can amalgamate the two, so if anybody know please let on thanks.

    Thanks SierraDragon for your thorough reply, but I can't be using Managed-Masters because 95% of my Pictures are outside of the library and referenced, I have since found out. I wasn't under the impression the default was to store inside the library, I have always saved to the Pictures folder.
    I know about the 70% HDD issue (although I thought it was 50%), but what can I do, I can't split my Aperture Library, I wan't everything in one place. Storage on an external drive is a no no because I use a MacBook, also I have only FW400 and USB2, so I know internal storage is best and of course SSD would solve a lot of my problems.
    Mr. Endo is advocating the use of Managed-Masters while you keep telling me to rely on a Referenced-Masters library, but I think Managed is better because everything is in one place. Also, I'm had an internal HDD failure before and although I'd made a recent backup with Vaults (I have backed up with vaults since v.2 by the way) and Time Machine, the process of piecing back together the library was arduous to say the least - it was all manual!! If it were all contained inside the library file It would have been simple, right?
    As my library is already 317.91GB I am left a little unsure as to why, because I know I have most of my images stored in the Pictures folder (122.64GB) but not sure why its so big just from Reference images and metadata (which is basically text!). I base this on the "File Searches" (Managed/Referenced) which Mr Endo advised me to do and with only 7321 images as Managed the rest (126,422) are not inside, so why so big, my library being mostly JPEG and consisting of 133,743 images??
    How can the Referenced-Masters Library remain a reasonable size if placed on an external source like you say? surely it will be the same size anywhere?! You mean my local HDD will be kept under control, well sure, but tethering an external HDD is no fun with a MacBook as I use it on my lap. I think that storing imagery inside the Library is better, I'm not one of those who touches the folder structures in the Pictures folder and work exclusively inside Aperture, it seems like those who use referenced masters are worried about that.
    I base my decision on centralisation as, having read the following, I get the impression that Managed will allow Vaults to back everything up, even though I have a Time Machine its easier this way. The only part of the document which I think is opinionated, rather than factual, is the last bit which mentions:
    "As a point of comparison; most hobbyists use Managed, most pros use Referenced."
    ref: http://aperture.maccreate.com/2010/01/12/tip-0-referenced-vs-managed-files/
    ..I must be a hobbyist because I don't shoot weddings and edit on the road.
    Another site had most people using Managed because its easier to handle imagery and back up, while those who used a reference library did so because of the restrictions of space on a portable and bad habits from the past. Yet I believe that I can manage my library on one HDD and don't fancy the idea of tethering external storage from a MacBook.
    The only things I am concerned with now are the the "Offline" and "Missing" discrepancies in my library; which come to 1277 images, I don't know how this happened but I should be able to get them back with my Time Machine backup shouldn't I?
    So, if I move to a Managed Library with the built in tool (set to move, not copy) I've been told I might get duplicates, hmm, this is to be avoided, but what on earth is taking 317.91GB of space when 95% of my library is outside of it and in a folder which totals to 122.64GB?? Further, is it an all or nothing affair when engaging in this change or can I do selected imagery at a time?
    Thanks.

  • I changed my Apple ID for an iphone 4s and need to change the iCloud Apple ID/password.  I am unable to change the Apple ID under the iCloud account information without the password which no longer exists.  How can I update my phone?

    I had to change the Apple ID used for my iphone 4s.  How do I change the Apple ID for the iCloud information? - the old Apple ID/password no longer exists and this information is requested to make a change.  I am unable to change the Apple ID for the iCloud account.

    Apple IDs never go away, so it still exists.
    But lets be clear. You actually stopped using an Apple ID and created a NEW Apple ID. You didn't just change the email address of your Apple ID? That means that all of the music and apps purchased with the old Apple ID will have to be purchased again.
    If you really did create a new Apple ID you will need the password associated with the old one to disable Activation Lock. There is no way around this. As I said, the old one still exists. You can use the standard tools to recover the password at https://appleid.apple.com.

  • How can I count detail information without having it show up in my results

    I'm trying to count the number of sales orders within specific value ranges such as 0 to 100, 100 to 200, ect. I can get the count but only when the order number is on the report. Is there someway to count the orders and place them in the Bins without having a line show up for each order.

    Put the BINS column in the "Sections" area. This will split the rows for each BIN group. Now you can apply the "sigma sign" aggregation to the rows and see the total for each BIN.
    Expected result is to have one row per BIN group with the total of your measure for each BIN.
    If this is not what you are looking for, give a mock up of what you see in your pivot table.
    Having said all this, if you're going to be working with a million rows, you'd best break the query up into separate queries. Build one Report for each BIN group and place each in its own section of a dashboard.
    What you can do is rename each section of the dashboard to the name of the BIN group and delete the Title View of each Report. The dashboard can then be defaulted to a collapsed state showing the names of each Report (the BINS of each group). In effect, you are using the Dashboard as a giant pivot table with the Sections as the BINS. The reports are smaller and you can have your total for each BIN.
    This is what I would recommend.

  • How do I collect user information without using an LMS?

    I have been using Captivate 5 to create training modules that we host on our own site.  The modules are information driven and have no testing included.  Our clients would like us to collect information from the user to track who has viewed the module.  All we need is their name and employee number.  Is there a way to accomplish this without having the user send an email?
    Thanks!

    It sounds like you're publishing your Captivate content as htm/swf output?
    If so and you have access to the services of a web developer, you can use Javascript in the web browser to pass the user information from Captivate out to the browser.  Once in the browser, you can then do anything with the data that your web developer can dream up.
    Jim Leichliter wrote a great series of articles that cover the basics of accessing Captivate variables using JavaScript.   This article in particular talks about passing Captivate variables out to the browser:
    http://captivatedev.com/2011/04/02/captivate-javascript-series-part-3-retrieving-captivate -variables/
    Cheers,
    John

  • How do i unlock my iPad without my password

    i forgot my password and tried to get in by syncing with computer but that didnt work

    How can I unlock my iPad if I forgot the passcode?
    http://www.everymac.com/systems/apple/ipad/ipad-troubleshooting-repair-faq/ipad- how-to-unlock-open-forgot-code-passcode-password-login.html
    iOS: Device disabled after entering wrong passcode
    http://support.apple.com/kb/ht1212
    How can I unlock my iPad if I forgot the passcode?
    http://tinyurl.com/7ndy8tb
    How to Reset a Forgotten Password for an iOS Device
    http://www.wikihow.com/Reset-a-Forgotten-Password-for-an-iOS-Device
    Using iPhone/iPad Recovery Mode
    http://ipod.about.com/od/iphonetroubleshooting/a/Iphone-Recovery-Mode.htm
    Saw this solution on another post about an iPad in a school environment. Might work on your iPad so you won't lose everything.
    ~~~~~~~~~~~~~
    ‘iPad is disabled’ fix without resetting using iTunes
    Today I met my match with an iPad that had a passcode entered too many times, resulting in it displaying the message ‘iPad is disabled – Connect to iTunes’. This was a student iPad and since they use Notability for most of their work there was a chance that her files were not all backed up to the cloud. I really wanted to just re-activate the iPad instead of totally resetting it back to our default image.
    I reached out to my PLN on Twitter and had some help from a few people through retweets and a couple of clarification tweets. I love that so many are willing to help out so quickly. Through this I also learned that I look like Lt. Riker from Star Trek (thanks @FillineMachine).
    Through some trial and error (and a little sheer luck), I was able to reactivate the iPad without loosing any data. Note, this will only work on the computer it last synced with. Here’s how:
    1. Configurator is useless in reactivating a locked iPad. You will only be able to completely reformat the iPad using Configurator. If that’s ok with you, go for it – otherwise don’t waste your time trying to figure it out.
    2. Open iTunes with the iPad disconnected.
    3. Connect the iPad to the computer and wait for it to show up in the devices section in iTunes.
    4. Click on the iPad name when it appears and you will be given the option to restore a backup or setup as a new iPad (since it is locked).
    5. Click ‘Setup as new iPad’ and then click restore.
    6. The iPad will start backing up before it does the full restore and sync. CANCEL THE BACKUP IMMEDIATELY. You do this by clicking the small x in the status window in iTunes.
    7. When the backup cancels, it immediately starts syncing – cancel this as well using the same small x in the iTunes status window.
    8. The first stage in the restore process unlocks the iPad, you are basically just cancelling out the restore process as soon as it reactivates the iPad.
    If done correctly, you will experience no data loss and the result will be a reactivated iPad. I have now tried this with about 5 iPads that were locked identically by students and each time it worked like a charm.
    ~~~~~~~~~~~~~
    Try it and good luck. You have nothing more to lose if it doesn't work for you.
     Cheers, Tom

  • I have an ipod that we put a password on and she forgot the password. How can I access the information and the password?, I have an ipod that we put a password on and she forgot the password. How can I access the information and the password?

    How can I fix this problem?

    You have to connect the iPod to here computer and restore the iPod via iTunes on the computer.  You may have to place the iPod in recovery mode to allow the restore. For rcovery mode:
    iPhone and iPod touch: Unable to update or restore

  • How to open a mackbook Pro without a password

    I dont remember My password..

    You need to reset your admin password.
    You can do this using your Apple ID  >   OS X: Apple ID can be used to reset your user account password
    Or, for Macs running v10.7 Lion, v10.8 Mountain Lion , or v10.9 Mavericks, help here > Reset the user password in OS X Lion, Mountain Lion and Mavericks: Apple Support Communities
    Or, for Macs running v10.6 or earlier > OS X: Changing or resetting an account password

  • How do you disable Parental Controls without admin password? When I go on Safari, this window pops ALL THE TIME saying you need to add some certain websites. I really want to get on Facebook and YouTube. I don't even remember the password.

    I need to get on Facebook and YouTube so I can make my videos and post them and post stuff on Facebook to my friends. Please help me? Plus it's an iMac model: A1208. I really need help.

    If I understand correctly, Sonic Kaboom.swf needs to be edited in a separate Flash authoring program and then reinserted into your HTML document. 
    As Murray said, Flash is dead.  Nobody uses it anymore.   We use HTML5, CSS3 and JavaScript animations which have universal support from Smartphones, Tablets and other web devices that can't support Flash.   Look at Edge Animate.
    HTML animation | Download free Adobe Edge Animate CC trial
    Nancy O.

Maybe you are looking for

  • Reading values from JTable

    I have som problems reading the values from JTable. the user enters a number in the table, but some cells are empty. I want to store the values in an int array, and if the user has not filled a cell it is supposed to be set as zero. Now I cant seam t

  • Can not acces the router's set up page

    I am trying to access the router's set up page and can't.  I typed in 192.168.1.1 and typed in the word "admin" in the password (left the username blank), and get nothing.  I tried unplugging, and resetting the router and still dont get anything, it

  • Problem uninstalling virtual PC 7!!!

    I recently installed virtual pc 7 on my powerbook, but after having it run so slow and noticing that i only had 5 gbs left (the windows virtual machine was assigned 20 gigs of my 80) i decided to uninstal it. the uninstall seemed to be successful, ho

  • Enabling Parent button while external swf is loaded [AS3]

    Hello everyone, I am very new to Flash and it takes me a while to understand what code is trying to tell me The problem I am currently facing is as follows: After searching the net for hours I finally figured out, how to load an external swf into my

  • R block in FBL1N

    hi gurus WHY i get R block in  payment for all vendor in fbl1n regards leo