Pages:
Author

Topic: HOWTO: create a 100% secure wallet - page 85. (Read 276221 times)

member
Activity: 65
Merit: 10
July 17, 2012, 04:49:12 PM
Thanks for all the info  Smiley
 I will testit
hero member
Activity: 728
Merit: 500
In cryptography we trust
July 17, 2012, 01:14:42 PM
Hey all,

Last week I posted 2 quick questions up a bit on this thread:
https://bitcointalksearch.org/topic/m.1028921

I'm wondering if someone could glance at them and give my reasoning a sanity / double check?

John has actually answered both your questions:
https://bitcointalksearch.org/topic/m.1029620
newbie
Activity: 15
Merit: 0
July 17, 2012, 01:09:55 PM
Hey all,

Last week I posted 2 quick questions up a bit on this thread:
https://bitcointalksearch.org/topic/m.1028921

I'm wondering if someone could glance at them and give my reasoning a sanity / double check?
full member
Activity: 188
Merit: 100
July 17, 2012, 11:17:14 AM
i downloaded the default client from bitcoin.org, the bitcoin-qt one, but it didnt create 10 addresses for me, just one and also i can't locate the wallet.dat file. Any help with that?
member
Activity: 62
Merit: 10
July 16, 2012, 01:04:27 PM
Very nice information, thanks friends.

-The zorgberg
member
Activity: 75
Merit: 10
July 16, 2012, 11:52:46 AM
thank you for this information Smiley
newbie
Activity: 6
Merit: 0
July 14, 2012, 05:04:10 PM
Great thread, thanks. Smiley
legendary
Activity: 1288
Merit: 1227
Away on an extended break
July 13, 2012, 10:35:54 PM
Thank you for this resource - it's a great read for a new user.

I have a question about taking a similar approach, but with some slightly different parameters:

1) I don't have an optical drive, but I'm just about to do a full system format and fresh install of Win 7. If I made the general process described in the OP my first task, and then securely wiped the wallet.dat file (and uninstalled the client), I could accomplish largely the same level of security, correct?

2) Suppose I want to undertake the process described above, without ever connecting my OS to the internet, does that work? I presume the the bitcoin client doesn't actually require the whole blockchain to be downloaded in order to simply generate the wallet.dat file.

Thanks!

It depends on what you ascertain as the 'same level of security'. If you made sure your OS is clean, and you wipe all traces securely, then yes, your wallet should be secure.
You can generate the wallet.dat file without having to connect to the internet at all.
newbie
Activity: 52
Merit: 0
July 13, 2012, 06:34:54 PM
Really sorry to put a downer on the conversation, But seeing as lately there is a problem with residual currents in many brands of RAM, isn't it feasible that by removing the RAm from the PC in use and then accessing it via another medium, theft is still possible?

I've heard of this kind of attack before, Obviously there is a limit on how long the memory can be left after shutdown, but it would make sense to power cycle the PC in question before leaving...

note: This probably isn't something for the average user to worry about, seeing as the thief would mostlikely have to be a friend or family member unless they plan to break into the house immediately after the PC is used. That would beg the question, Why bother? It's just a pointer for people with masses upon masses of coins.

If someone has enough BTC to worry about such a sophisticated/unlikely attack, I hope they converted some coins to pay for a good security system. Cheesy It is entirely possible if the keys, or a passphrase to them, are in cleartext in memory for any reason.
newbie
Activity: 15
Merit: 0
July 13, 2012, 05:07:41 PM
Thank you for this resource - it's a great read for a new user.

I have a question about taking a similar approach, but with some slightly different parameters:

1) I don't have an optical drive, but I'm just about to do a full system format and fresh install of Win 7. If I made the general process described in the OP my first task, and then securely wiped the wallet.dat file (and uninstalled the client), I could accomplish largely the same level of security, correct?

2) Suppose I want to undertake the process described above, without ever connecting my OS to the internet, does that work? I presume the the bitcoin client doesn't actually require the whole blockchain to be downloaded in order to simply generate the wallet.dat file.

Thanks!
newbie
Activity: 18
Merit: 0
July 12, 2012, 08:36:21 PM
thanks for this information
newbie
Activity: 53
Merit: 0
July 12, 2012, 12:50:54 PM
informative thanks.
newbie
Activity: 44
Merit: 0
July 11, 2012, 02:46:56 PM
very helpful thanx
legendary
Activity: 1288
Merit: 1227
Away on an extended break
July 11, 2012, 08:49:30 AM
This thread is very helpful.  Also I am willing to securely store peoples bitcoins for a small fee so they don't have to worry about wallet security.


I lol'ed.
newbie
Activity: 42
Merit: 0
July 11, 2012, 06:59:53 AM
Really sorry to put a downer on the conversation, But seeing as lately there is a problem with residual currents in many brands of RAM, isn't it feasible that by removing the RAm from the PC in use and then accessing it via another medium, theft is still possible?

I've heard of this kind of attack before, Obviously there is a limit on how long the memory can be left after shutdown, but it would make sense to power cycle the PC in question before leaving...

note: This probably isn't something for the average user to worry about, seeing as the thief would mostlikely have to be a friend or family member unless they plan to break into the house immediately after the PC is used. That would beg the question, Why bother? It's just a pointer for people with masses upon masses of coins.
hero member
Activity: 628
Merit: 500
July 10, 2012, 03:17:58 AM
It depends if you've encrypted the wallet or not. I would recommend you to use the encryption function that is present in the bitcoin client, and also back up the wallet.dat files after encrypting with a strong password to a pendrive.
If someone takes hold of your unencrypted wallet, they can do transactions with it, much like anyone losing their real wallet.

Thanks, I was going to ask this questions and I saw your answer Cheesy
legendary
Activity: 1288
Merit: 1227
Away on an extended break
July 10, 2012, 03:11:23 AM
Thanks for this. It seems like a good idea. I'm wondering something though. Currently I just have my wallet on my computer. Lets say someone has access to my computer, can they just copy it to an USB stick, and open it at home to do transactions with it?

I'm still trying to figure out how it works, and I haven't done any transactions yet.
It depends if you've encrypted the wallet or not. I would recommend you to use the encryption function that is present in the bitcoin client, and also back up the wallet.dat files after encrypting with a strong password to a pendrive.
If someone takes hold of your unencrypted wallet, they can do transactions with it, much like anyone losing their real wallet.
newbie
Activity: 58
Merit: 0
July 10, 2012, 01:08:32 AM
Thanks for this. It seems like a good idea. I'm wondering something though. Currently I just have my wallet on my computer. Lets say someone has access to my computer, can they just copy it to an USB stick, and open it at home to do transactions with it?

I'm still trying to figure out how it works, and I haven't done any transactions yet.
member
Activity: 98
Merit: 10
(:firstbits => "1mantis")
July 09, 2012, 06:37:32 PM
What it sounds like is can make this wallet file; save it on an SD card. Lock it up in my closet.  Then deposit coins to the address associated with the wallet.dat file with out having to take it out of its 'spot' UNLESS i want to pull coins out of my savings?  If so this is awesome! I'm looking forward to setting this up.  Thanks for the post!

MassMaster

Be sure to place it in an anti-static plastic bag and then wrap the card and bag up with aluminum foil to prevent electromagetic attack.
newbie
Activity: 50
Merit: 0
July 09, 2012, 04:43:10 PM
thanks
Pages:
Jump to: