← Back to context

Comment by graemep

6 hours ago

So no backups?

Correct. Private keys should never be backed up. Instead, should you need a backup, you should create a distinct key for that purpose.

  • That's a great plan until you're locked out of all your devices with no backup.

    • I think the implication is that you should own multiple client devices capable of SSHing into things, each with their own SSH keypair; and every SSH host you interact with should have multiple of your devices’ keypairs registered to it.

      1 reply →

You can have backup private keys, they don't have to be copies of some other private keys.