<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Backups on ST2 Projects</title>
    <link>https://st2projects.com/tags/backups/</link>
    <description>Recent content in Backups on ST2 Projects</description>
    <image>
      <title>ST2 Projects</title>
      <url>https://st2projects.com/post-cover.png</url>
      <link>https://st2projects.com/post-cover.png</link>
    </image>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Wed, 19 Jan 2022 10:46:50 +0000</lastBuildDate>
    <atom:link href="https://st2projects.com/tags/backups/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Doomsday Recovery</title>
      <link>https://st2projects.com/posts/doomsday-recovery/</link>
      <pubDate>Wed, 19 Jan 2022 10:46:50 +0000</pubDate>
      <guid>https://st2projects.com/posts/doomsday-recovery/</guid>
      <description>&lt;h1 id=&#34;doomsday-recovery&#34;&gt;Doomsday Recovery&lt;/h1&gt;
&lt;p&gt;This page serves as a dumping ground for ideas on preserving access to online ( and offline ) accounts in the event of disaster&lt;/p&gt;
&lt;h2 id=&#34;general-principles&#34;&gt;General Principles&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;All passwords are stored in a password safe ( KeePass )&lt;/li&gt;
&lt;li&gt;Password safe lives on the NAS and is backed up once per day to a spare nas&lt;/li&gt;
&lt;li&gt;primary NAS is backed up once per week to B2 Storage&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id=&#34;todos&#34;&gt;TODOs&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;input checked=&#34;&#34; disabled=&#34;&#34; type=&#34;checkbox&#34;&gt; Consider a way to ensure access with TOTP codes&lt;/li&gt;
&lt;li&gt;&lt;input checked=&#34;&#34; disabled=&#34;&#34; type=&#34;checkbox&#34;&gt; Ensure duplicate yubikeys are used&lt;/li&gt;
&lt;li&gt;&lt;input disabled=&#34;&#34; type=&#34;checkbox&#34;&gt; Automate as much as possible&lt;/li&gt;
&lt;li&gt;&lt;input disabled=&#34;&#34; type=&#34;checkbox&#34;&gt; Document&lt;/li&gt;
&lt;li&gt;&lt;input disabled=&#34;&#34; type=&#34;checkbox&#34;&gt; Practice&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id=&#34;totp-and-2fa&#34;&gt;TOTP and 2FA&lt;/h2&gt;
&lt;p&gt;It&amp;rsquo;s good practice to enable and use 2FA whenever the platform you&amp;rsquo;re using offers it ( if they don&amp;rsquo;t then ask them why! ). Any 2FA is better than no 2FA, but it&amp;rsquo;s a good idea to avoid SMS based tokens, there have been a few high profile victims of sim-jacking and it&amp;rsquo;s not that hard to do&amp;hellip; That&amp;rsquo;s not to say that other 2FA methods are foolproof&amp;hellip; you can still phish for hardware tokens after all.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
