Live data from Hacker News

1Password Travel Mode: Protect your data when crossing borders

blog.agilebits.com

431–440 of 553 posts

Re: 1Password Travel Mode: Protect your data when crossing borders

#431
I'm kind of wondering how this all works in general when getting to the US.

Considering my usual work contracts, complying with letting border control look into my fully encrypted work laptop would actually be a breach of my work contract.

How do you guys handle this?

Re: 1Password Travel Mode: Protect your data when crossing borders

#432
I've had this idea for so many years now: your gmail account has - let's call it - a master password and a throwaway password. Say you need to print something from a public PC, you just use that password that works only once, even if somebody key-logs it, you're safe.

Re: 1Password Travel Mode: Protect your data when crossing borders

#434
post #352

"May I search your laptop?" "Certainly." "But... this is practically empty." "Yes sir. I FedEx'd my SSD to the destination." I have a small SSD in the primary disk in my T420s, it has just enough to get me through the flight. I keep the primary in the UltraBay with a simple adapter, takes one reboot and no tools to put it back in place. Done. Happy searching! I can't log into anything even if I wanted to because I ph…

"Why did you FedEx your SSD to the destination? Do you have something to hide? You're gonna have to follow us."

Re: 1Password Travel Mode: Protect your data when crossing borders

#435
post #409

Earlier quoted context omitted.

I have been that guy. All of 2009-2013 or so. After being locked in secondary with no comms, food, or water for hours on hours enough times, one gives up. CBP once kicked me out of a border control point in northern Vermont, in a snowstorm, in February. I had to hitchhike simply to not freeze (my sim didn't work, so no way to call a cab, and they had sent the bus on without me, hours earlier). I've been searched, bot…

This sounds like the reprisals citizens of the totalitarian states in the Warsaw Pact had to endure. Heads up for pushing against it. Out of curiosity, do you know if there are any people trying to challenge these rulings/treatment they receive in court?

At least in those - and I'm sure this still happens - you could bribe the officials.

Actually is that possible in the US or do the border officials still have a stick up their arse? I mean if you work for a big multinational IT company, surely they can provide a few hundred bucks to bribe someone to skip security. Bribing the police is normal in a lot of countries.

Re: 1Password Travel Mode: Protect your data when crossing borders

#436

I've had this idea for so many years now: your gmail account has - let's call it - a master password and a throwaway password. Say you need to print something from a public PC, you just use that password that works only once, even if somebody key-logs it, you're safe.

2FA is basically an ever changing 2nd password used 1 time. I use it everywhere it is supported. More info: https://www.google.com/landing/2step/

Re: 1Password Travel Mode: Protect your data when crossing borders

#437

I'm kind of wondering how this all works in general when getting to the US. Considering my usual work contracts, complying with letting border control look into my fully encrypted work laptop would actually be a breach of my work contract. How do you guys handle this?

Refuse to go to the US unless provided with a safe / separate laptop that contains nothing that would cause a breach.

I'd make it your employer's responsibility. If you have to go to the US on business, it's your employer's responsibility to help. Or to not send you to the US.

Re: 1Password Travel Mode: Protect your data when crossing borders

#438
post #407

Earlier quoted context omitted.

If you read the article, there is no "tell" that 1Password is in Travel Mode. The only impact is that most of your passwords are missing from the password vault, but the agent would have no way of knowing what's missing. It's not like it pops up a big "Travel Mode" banner.

Customs read these articles just like us. What if they ask you if travel mode is turned on? Will you lie?

Does it matter? Just say "yes", and your employer / the account manager should be the only one that should be able to disable it.

Re: 1Password Travel Mode: Protect your data when crossing borders

#439
post #79
post #61

Earlier quoted context omitted.

This is closer to the former than the latter. You aren't erasing the data that's protected under the vaults. You're just temporarily removing the vaults from local storage, disabling access and obscuring its presence. It's trivial to re-enable that access, so you are hiding , not destroying . Nice mental gymnastics, though. I'm genuinely curious whether the first Federal judge to see this argument laughs or issues a…

Seems like it's a tough argument though, I never have all my email on my phone, or all my dropbox files, etc. If I choose to not sync certain GMAP labels to IMAP, does that mean I am 'hiding' them?

Have you kept the data off your phone specifically for the purpose of not letting them see it, intending to sync back up afterwards?

Re: 1Password Travel Mode: Protect your data when crossing borders

#440
post #4

Earlier quoted context omitted.

Social engineering. Confidence. At some point technology needs to be abandoned and you need to be a human being during those scenarios. Or simply don't have anything to hide. If you have a guilty conscience that is going to manifest itself in your body language and mannerisms.

> Or simply don't have anything to hide. If you have a guilty conscience that is going to manifest itself in your body language and mannerisms. What if I am an anxious guy? What if I carry some business secrets? What if I don't want some TSA agent look at my SO pics I have on my devices/social media?

Best to avoid the USA, basically.
Post reply on HN