pull down to refresh

Thinking of putting my funds on a VPS that I don't have physical control over scares me to death.
As it should.
What would you do in his situation?
  1. Put whatever coins are savings in a cold wallet
  2. Keep spending coin on hot wallet somewhere else. Can be a phone but be wary that phones easily get hacked/lost/stolen, so be conservative in what's exposed.
  3. Don't run the node at all if you can't stay on top of it: nodes aren't fire-and-forget and security patching OS is intensive. If you do want to run the node, don't put a wallet on the VPS, just the node. You can add electrs to have your own private electrum endpoint for your hot wallet to have a proper "economic node".
Whatever you do... don't put keys on VPSs. @justin_shocknet said it clinically precise:
as long as [keys] are used in memory for any purpose, then they are ultimately accessible.
This is my very late answer.
As I told you, my friend has a private knot that he has to make disappear from the house. He has his wallet on his note, so I proposed to him to move it to his mother's house.
An empty node, without a wallet, can also be kept at home, it only has to transfer the funds, so we thought of moving the node to the mother's house.
These are funds that he hardly touches, so they are almost never used.
A cold wallet? I've to told with him about this solution.
On mobile phone he had few sats in a custodial wallet cause we don't have a LN node.
I agree not to put his own keys on VPS.
reply
Alright, so if this is something for right now, only have an hour:
Move the node but please follow @justin_shocknet's advice and remove tor, or at the very, very least change the service keys after disconnecting. You do NOT want to be correlation-mapped through service keys moving to mom's IP.
Alternatively if you have more time than an hour: back up the wallet, store the backup on 2 encrypted usb sticks which you put in a safe(ty deposit box), make sure it's there and wipe the box. Can restore everything when you retain the wallet, all you need is sync.
reply
Ok, all right. But really can't understand the problem to had a tor node. I think that is a simple way to help the tor community.
reply
0 sats \ 1 reply \ @optimism 3h
If your goal is to help "the community" while with high probability doxxing your IP-to-tor-key mapping across family members, then there is no problem I guess? It's cheap to change though? So why risk it?
reply
If your goal is to help "the community" while with high probability doxxing your IP-to-tor-key mapping across family members, then there is no problem I guess? It's cheap to change though? So why risk it?
Changing keys is absolutely not a problem, in fact it was absolutely planned.
reply
Thanks also to you. Same here, I've read yesterday but from phone. Also now I'm away from my computer and I hate write from phone. I'll replay tobyiu later cause I've some question about your reply.
reply