Bitcoin Forum

Bitcoin => Bitcoin Technical Support => Topic started by: cryptoverted on October 10, 2017, 12:14:10 PM



Title: Private Key/Seed Best Practices
Post by: cryptoverted on October 10, 2017, 12:14:10 PM
What are some best practices for storing private keys or seeds? Are there any good resources with best practices? What are your best practices?

Some questions that come to mind:

  • How many copies to you keep?
  • Do you keep it on multiple mediums (paper, usb, cryptosteel, cdrom, etc)?
  • Do you keep the full seed/key on each medium or split it (e.g. 1/2 on one paper, 1/2 on other paper)?
  • If the seed/key is encrypted (e.g. veracrypt or keepass), is it safe to store on cloud storage?
  • Where are the best places to keep copies (cloud, buried in yard, home safe, bank safe deposit box, parent's house)?


Title: Re: Private Key/Seed Best Practices
Post by: Welsh on October 10, 2017, 12:32:12 PM
What are some best practices for storing private keys or seeds? Are there any good resources with best practices? What are your best practices?

Some questions that come to mind:

  • How many copies to you keep?
  • Do you keep it on multiple mediums (paper, usb, cryptosteel, cdrom, etc)?
  • Do you keep the full seed/key on each medium or split it (e.g. 1/2 on one paper, 1/2 on other paper)?
  • If the seed/key is encrypted (e.g. veracrypt or keepass), is it safe to store on cloud storage?
  • Where are the best places to keep copies (cloud, buried in yard, home safe, bank safe deposit box, parent's house)?

Keep as many as you want. I don't keep all my funds on one wallet either. I have several which I've split the funds up. So if you lose one, then it's not such a big hit. (Don't lose them)

You can keep them split if you want. If someone is wondering around your belongings and only finds one piece of paper then maybe it could be a good idea. My codes aren't exactly in plain text though but one. I have a back up which if I were to have an accident someone  in the family will be able to access it.

I wouldn't recommend storing it on cloud. Even if they are encrypted.

I like your imagination! Anywhere which is safe from theft and accidental damage. For example, fire/water proof locations.


Title: Re: Private Key/Seed Best Practices
Post by: aplistir on October 10, 2017, 12:40:41 PM
What are some best practices for storing private keys or seeds? Are there any good resources with best practices? What are your best practices?

Some questions that come to mind:

  • How many copies to you keep?
  • Do you keep it on multiple mediums (paper, usb, cryptosteel, cdrom, etc)?
  • Do you keep the full seed/key on each medium or split it (e.g. 1/2 on one paper, 1/2 on other paper)?
  • If the seed/key is encrypted (e.g. veracrypt or keepass), is it safe to store on cloud storage?
  • Where are the best places to keep copies (cloud, buried in yard, home safe, bank safe deposit box, parent's house)?

Are you trying to ask where we keep our private keys and seeds?
My backup for my 1000000BTC:s is on my backyard dug behind the large tree, and my address is xxxxxxx. Why do you want to know?  ;D ;D

On a more serious note,
Remember to protect them from fire too. At least one copy should be in a different location.

 


Title: Re: Private Key/Seed Best Practices
Post by: HeRetiK on October 10, 2017, 01:26:02 PM
I also recommend at least 2 backups, of which at least one is at a different, secure location. In my opinion paper (or laminated paper) is fully sufficient, but that really depends on where you plan on storing your backups. Burying a plain piece of paper may be a bad idea ;)

But most importantly, keep those copies offline! Don't store wallet backups in the cloud. And also...

Make sure you keep at least 2 copies on two different computers.

...don't store them on computers, unless they are offline.


Title: Re: Private Key/Seed Best Practices
Post by: DannyHamilton on October 10, 2017, 01:43:28 PM
What are some best practices for storing private keys or seeds? Are there any good resources with best practices? What are your best practices?

Some questions that come to mind:

  • How many copies to you keep?

It depends on the quantity of bitcoin and how I plan to use them, but typically I keep at least three copies.

  • Do you keep it on multiple mediums (paper, usb, cryptosteel, cdrom, etc)?

Not always, but generally for anything more than $100 worth I use at least 2 mediums.

  • Do you keep the full seed/key on each medium or split it (e.g. 1/2 on one paper, 1/2 on other paper)?

I have occasionally used secret sharing and/or MultiSig to split keys or seeds for larger amounts of bitcoins. More commonly, I just encrypt the data.

  • If the seed/key is encrypted (e.g. veracrypt or keepass), is it safe to store on cloud storage?

If your password is stong enough, and you encrypt it properly, it theoretically *should* be safe to store on cloud storage. Personally, I've never been willing to try.

  • Where are the best places to keep copies (cloud, buried in yard, home safe, bank safe deposit box, parent's house)?

Everyone's situation is different.  What is best for one person is not always best for another.

If it is intended to be long term storage, then I'd suggest making sure that copies are physically separated so that a disaster that destroys one key (flood, fire, earthquake, mudslide, tornado, hurricane, burglary, volcano, aircraft collision, bomb, police "civil asset forfeiture" search, etc) does not damage the other copy.


Title: Re: Private Key/Seed Best Practices
Post by: Frostedlocks on October 11, 2017, 01:53:10 AM
Is there anyway to get the private key for NEM wallet? Had the wallet on ios10, restored new phone and wallet did not transfer over after completion of download. I have made transactions with bittrex before, not sure if maybe they have a ledger or not or if I am just screwed....


Title: Re: Private Key/Seed Best Practices
Post by: Thekool1s on October 11, 2017, 05:25:44 AM
What are some best practices for storing private keys or seeds? Are there any good resources with best practices? What are your best practices?

Some questions that come to mind:

  • How many copies to you keep?
  • Do you keep it on multiple mediums (paper, usb, cryptosteel, cdrom, etc)?
  • Do you keep the full seed/key on each medium or split it (e.g. 1/2 on one paper, 1/2 on other paper)?
  • If the seed/key is encrypted (e.g. veracrypt or keepass), is it safe to store on cloud storage?
  • Where are the best places to keep copies (cloud, buried in yard, home safe, bank safe deposit box, parent's house)?

Well for me personally, I prefer an offline PC to generate new Seeds. For keeping the seed save, I prefer atleast 3 copies, 1 on an offline PC, 1 on a usb Drive and 1 on a plastic covered paper. I have never thought of splitting up the seed but it sounds like a good idea. As for keeping encrypted seeds on cloud storage, I am always against that. You never know when your data might get leaked and with the dictionaries out there these days, its not the risk i am willing to take. Last question is a bit tricky, The ideal situation will be to have multiple storage points but they do carry a risk. A home safe sounds like a good idea as for banks, its a big no! Parents house yes! I believe there is no perfect way to protect your btcs, you can just take necessary steps to prevent your losses.


Title: Re: Private Key/Seed Best Practices
Post by: Wicked17 on October 11, 2017, 06:32:26 AM
What are some best practices for storing private keys or seeds? Are there any good resources with best practices? What are your best practices?

Some questions that come to mind:

  • How many copies to you keep?
  • Do you keep it on multiple mediums (paper, usb, cryptosteel, cdrom, etc)?
  • Do you keep the full seed/key on each medium or split it (e.g. 1/2 on one paper, 1/2 on other paper)?
  • If the seed/key is encrypted (e.g. veracrypt or keepass), is it safe to store on cloud storage?
  • Where are the best places to keep copies (cloud, buried in yard, home safe, bank safe deposit box, parent's house)?

As of now i only have plenty of bitcoins so i am only storing my funds in blockchain wallet . I seperate my private keys into 2 parts . Im using 2usb and one back up in a paper wallet as well. In the future if i will have big amount of btc im planning to use ledger nano s as my storage of bitcoins.


Title: Re: Private Key/Seed Best Practices
Post by: TheQuin on October 11, 2017, 06:45:21 AM
As of now i only have plenty of bitcoins so i am only storing my funds in blockchain wallet . I seperate my private keys into 2 parts . Im using 2usb and one back up in a paper wallet as well. In the future if i will have big amount of btc im planning to use ledger nano s as my storage of bitcoins.

Just a quick word of warning that usb disks are not really suitable as they can and often do just stop working. I'd recommend that you spend a little extra on a portable HDD to replace that and also make sure it's not stored in the same place as the paper wallet as a fire or whatever could result in you losing both.


Title: Re: Private Key/Seed Best Practices
Post by: mensa84 on October 11, 2017, 10:45:58 AM
What are some best practices for storing private keys or seeds? Are there any good resources with best practices? What are your best practices?

Some questions that come to mind:

  • How many copies to you keep?
  • Do you keep it on multiple mediums (paper, usb, cryptosteel, cdrom, etc)?
  • Do you keep the full seed/key on each medium or split it (e.g. 1/2 on one paper, 1/2 on other paper)?
  • If the seed/key is encrypted (e.g. veracrypt or keepass), is it safe to store on cloud storage?
  • Where are the best places to keep copies (cloud, buried in yard, home safe, bank safe deposit box, parent's house)?

1) 2 - PC and cloud
2) Yes cloud
3) No
4) Yes
5) Cloud

I keep all my private keys and wallets in the cloud
They are all stored in an encrypted RAR archive with a very strong password consisting of A-Za-z0-9+special characters


Title: Re: Private Key/Seed Best Practices
Post by: maeusi on October 11, 2017, 07:48:21 PM
I use different methods. For small amounts, I use an online wallet. If needed, I can make a seed for backup. I also use paper mind and mobile wallets. I use different offline password managers to store the keys of mind wallets.


Title: Re: Private Key/Seed Best Practices
Post by: Babebottle on October 11, 2017, 10:40:43 PM
No cloud,I store my key in rar format with strong password and store it at USB drives and my laptop, so i think this is much safer


Title: Re: Private Key/Seed Best Practices
Post by: eternalgloom on October 12, 2017, 08:41:03 PM
Quote
How many copies to you keep?

I personally keep two copies of my private keys.
Quote
Do you keep it on multiple mediums (paper, usb, cryptosteel, cdrom, etc)?

Yes, for larger amounts, I have a few paper wallets which are laminated an a copy on usb drive made on a pc that was never connected to the internet.
Quote
Do you keep the full seed/key on each medium or split it (e.g. 1/2 on one paper, 1/2 on other paper)?

Full seed on each medium, I think this is enough for ;y personal needs, we're not talking about that many coins.
Quote
If the seed/key is encrypted (e.g. veracrypt or keepass), is it safe to store on cloud storage?

I definitely would never store anything important on cloud storage.
Quote
Where are the best places to keep copies (cloud, buried in yard, home safe, bank safe deposit box, parent's house)?

You need to figure this one out for yourself, but I like to keep it in a place I have easy access to.



Title: Re: Private Key/Seed Best Practices
Post by: bob123 on October 13, 2017, 08:11:15 PM
  • If the seed/key is encrypted (e.g. veracrypt or keepass), is it safe to store on cloud storage?
If your password is stong enough, and you encrypt it properly, it theoretically *should* be safe to store on cloud storage. Personally, I've never been willing to try.

Properly is the keyword.
Truecrypt already had massive security issues regarding encryption. As far as i know devs made mistakes when using/overwriting RAM.
Veracrypt may not have this issue.. but i wouldn't call it 100% safe.
I did not know you can encrypt files with kpass yet. Thought it was a password manager only.


Title: Re: Private Key/Seed Best Practices
Post by: dragons_are_secure on October 15, 2017, 03:20:42 AM
I've been meaning to ask this around, so perhaps I can interject this into the discussion -- is there any emerging 'best-practices' on whether to use Hardware Secure Modules (HSMs) for this type of backup?

e.g. from safenet -- https://safenet.gemalto.com/data-encryption/hardware-security-modules-hsms/

In my view, this should be a very appropriate backup option, but I'm happy to get inputs on whether others have used this route. 


Title: Re: Private Key/Seed Best Practices
Post by: cpfreeplz on October 15, 2017, 03:26:52 AM
Create a paper wallet on a Linux Live Cd and from there you'll be very secure. The next thing you should do is create 2 or 3 backups and store them in a safe, safety deposit box or somewhere far away. Always encrypt with something you can remember. If you forget , your funds are gone. It's a good idea to keep a backup of this as well.


Title: Re: Private Key/Seed Best Practices
Post by: dragons_are_secure on October 17, 2017, 11:26:30 AM
for example, are there Bitcoin Forum members that use this type of flash drive for private key storage?
 
 https://www.amazon.com/Apricorn-Validated-256-bit-Encrypted-ASK-256-4GB/dp/B00741U31E/ref=pd_lutyp_im_4_1?_encoding=UTF8&pd_rd_i=B00741U31E&pd_rd_r=45TZRTX28P6RM2N4M16M&pd_rd_w=zBjl2&pd_rd_wg=zjfHg&psc=1&refRID=45TZRTX28P6RM2N4M16M


Title: Re: Private Key/Seed Best Practices
Post by: sonawer on October 17, 2017, 09:40:28 PM
I keep not much cash in the same wallet, so I limit myself to an encrypted copy on a personal computer and in a cloud storage. if the amount was more significant, I would prefer paper storage


Title: Re: Private Key/Seed Best Practices
Post by: shesheboy on October 17, 2017, 11:45:20 PM
    What are some best practices for storing private keys or seeds? Are there any good resources with best practices? What are your best practices?

    Some questions that come to mind:

    • How many copies to you keep?
    • Do you keep it on multiple mediums (paper, usb, cryptosteel, cdrom, etc)?
    • Do you keep the full seed/key on each medium or split it (e.g. 1/2 on one paper, 1/2 on other paper)?
    • If the seed/key is encrypted (e.g. veracrypt or keepass), is it safe to store on cloud storage?
    • Where are the best places to keep copies (cloud, buried in yard, home safe, bank safe deposit box, parent's house)?

    heres my personal answers to your question.
    • How many copies to you keep?
    - i keep only two copy, one for .json file and one is saved on my notepad
    • Do you keep it on multiple mediums (paper, usb, cryptosteel, cdrom, etc)?
    - i keep them in phones internal memory and external memory ( memory card ) plus i also saved a copy on my desktop computer.
    • Do you keep the full seed/key on each medium or split it (e.g. 1/2 on one paper, 1/2 on other paper)?
    - i keep the all but if you split them it can cause you confusion and much hassel.
    • If the seed/key is encrypted (e.g. veracrypt or keepass), is it safe to store on cloud storage?
    - i dont think so, because it can be stole or hack and its better to just store it offline.
    • Where are the best places to keep copies (cloud, buried in yard, home safe, bank safe deposit box, parent's house)?
    - best place would be on home inside the house on a safe place like under the bed or cabinets.
    [/list]


    Title: Re: Private Key/Seed Best Practices
    Post by: Somail12 on October 18, 2017, 01:13:20 AM
    What are some best practices for storing private keys or seeds? Are there any good resources with best practices? What are your best practices?

    Some questions that come to mind:

    • How many copies to you keep?
    • Do you keep it on multiple mediums (paper, usb, cryptosteel, cdrom, etc)?
    • Do you keep the full seed/key on each medium or split it (e.g. 1/2 on one paper, 1/2 on other paper)?
    • If the seed/key is encrypted (e.g. veracrypt or keepass), is it safe to store on cloud storage?
    • Where are the best places to keep copies (cloud, buried in yard, home safe, bank safe deposit box, parent's house)?

    i split my private key copies into 2 usb storage, one half for the first storage and another half for the second one. I have also my copies in paper that is buried underground. I will never ever store my private key in a computer because i see it is best or main target of a hacker.


    Title: Re: Private Key/Seed Best Practices
    Post by: Jonashe on October 18, 2017, 01:53:49 PM
    Good advice in this thread, taking note of some ;)