## 12/17/2015 AK ---- [[Roots/EscrowAndRecovery/RandomHardware/CZ|Ĩesky]] | '''english''' ---- One easy (but challengeble) assumption for the [[Roots/EscrowAndRecovery|Escrow and Recovery]] subproject is that the root will be stored on hardware that is secure in some sense. === Some ideas for hardware === * [[http://www.crypteks.com/#/home|crypteks]] and [[http://www.gizmag.com/crypteks-usb-flash-drive/20693/|article]] * [[http://www.webupd8.org/2011/05/25-usb-stick-pc-running-ubuntu.html|$25 USB computer]] * [[http://www.lantronix.com/device-networking/embedded-device-servers/xport-pro-linux-dev-kit.html|UTP Xport]] is a tiny computer with a serial and a UTP (ethernet) hosting a Linux. * [[http://crypto-stick.org/|crypto-stick.org]] is an open source / open team approach to building a secure USB stick. * open means audit is simplified. * Probably cheap. * It is based on a high-sec '''CC''' platform, so we can argue that's as good as FIPS. * It is related to the [[http://en.wikipedia.org/wiki/OpenPGP_card|OpenPGP Card Project]] from FSFE? Or [[http://www.g10code.com/p-card.html|here]]... * [[CryptoHardware]] has some How Tos with common platforms. * [[http://www.spyrus.com/products/lynks_hardware.asp|Spyrus Lynks]] apparently only a couple a hundred bucks? * [[http://blog.invisiblethings.org/papers/2015/state_harmful.pdf|State considered harmful - A proposal for a stateless laptop]] Joanna Rutkowska December 2015 === Project Costings === * several-to-6 MM (man-months or full-time-employee-months) is suggested by [[http://permalink.gmane.org/gmane.comp.security.cryptography.randombit/2724|Von Welch]]. I guess we need a project costing for a volunteer-month. ---- . CategoryCryptoHardware