Doomsday Recovery
Doomsday Recovery This page serves as a dumping ground for ideas on preserving access to online ( and offline ) accounts in the event of disaster General Principles All passwords are stored in a password safe ( KeePass ) Password safe lives on the NAS and is backed up once per day to a spare nas primary NAS is backed up once per week to B2 Storage TODOs Consider a way to ensure access with TOTP codes Ensure duplicate yubikeys are used Automate as much as possible Document Practice TOTP and 2FA It’s good practice to enable and use 2FA whenever the platform you’re using offers it ( if they don’t then ask them why! ). Any 2FA is better than no 2FA, but it’s a good idea to avoid SMS based tokens, there have been a few high profile victims of sim-jacking and it’s not that hard to do… That’s not to say that other 2FA methods are foolproof… you can still phish for hardware tokens after all. ...