Re: losing private key, means losing access to resources, surely.

On 4/13/11 3:54 PM, Kingsley Idehen wrote:
>
> Re. ODS, you would do the following once you know your private key has 
> been compromised. For instance, you laptop is stolen. Even worse, your 
> USB key store is stolen.
>
> Steps:
>
> 1. Login to ODS using Digest Authentication using standard username 
> and pwd interaction pattern
> 2. Remove all Public Keys (via "Security" tab UI)
> 3. If in possession of a new USB key store or personal computer, 
> generate new certificates
> 4. Done, until next compromise of this magnitude.

Note, just for 100% clarity sake, #3 is about new certificate and 
associated private key generation. Then depending on the browser you use 
the cert. and associated key will be persisted to browser, OS store, or 
USB key store etc..

-- 

Regards,

Kingsley Idehen	
President&  CEO
OpenLink Software
Web: http://www.openlinksw.com
Weblog: http://www.openlinksw.com/blog/~kidehen
Twitter/Identi.ca: kidehen

Received on Wednesday, 13 April 2011 20:23:53 UTC