BillibusMaximus
@BillibusMaximus@sh.itjust.works
This is a remote user, information on this page may be incomplete. View at Source ↗
- Comment on Unlocking LUKS with NitroKey/Yubikey: FIDO2, HMAC-SHA1, or OpenPGP? 1 hour ago:
What’s better depends on your threat model and tolerance for inconvenience.
Personally, I prefer a hardware security token PLUS a lengthy and complex passphrase (both required to unlock). That way someone can’t access my system simply by stealing my hardware token.