Is it possible to publicly leave a PGP secret key password protected?

My PGP private keys are always password protected, which means you need to decrypt it using a symmetric key in order to access my private key.

I am interested in making the PGP secret key protected by a password publicly available, but I'm not quite sure if something is missing. Storing my secret key on my computer only seems to make things harder (security through obfuscation), but actually does nothing good.

given that I can password protect my private key with 256-bit AES http://en.wikipedia.org/wiki/Key_size#Symmetric_algorithm_key_lengths

and that there is a theoretical limit to the energy needed to crack a 2 ^ n password using brute force http://en.wikipedia.org/wiki/Brute_force_attack#Theoretical_limits

What am I missing?

+3
source share
5 answers

This greatly reduces your cryptographic strength, since brute force attacks to decrypt it can succeed in less time. Usually passwords do not have as many bits as the key itself. If your password does not exceed 20 characters, I would strongly advise against this. Short passwords can be cracked pretty quickly.

+11
source

, , , , . .

, ! . . , , .

+7

, , , , .

( ?)

+4

, . , , , , , ... , , , .

0

, 256- , - PGP GPG - . , . , () USB-, , , USB- . , , USB- : , , . ...

0
source

Source: https://habr.com/ru/post/1765752/


All Articles