Passwords at the Border
The password-manager 1Password has just implemented a travel mode that tries to protect users while crossing borders. It doesn’t make much sense. To enable it, you have to create a list of passwords you feel safe traveling with, and then you can turn on the mode that only gives you access to those passwords. But since you can turn it off at will, a border official can just demand you do so. Better would be some sort of time lock where you are unable to turn it off at the border.
There are a bunch of tricks you can use to ensure that you are unable to decrypt your devices, even if someone demands that you do. Back in 2009, I described such a scheme, and mentioned some other tricks the year before. Here’s more. They work with any password manager, including my own Password Safe.
There’s a problem, though. Everything you do along these lines is problematic, because 1) you don’t want to ever lie to a customs official, and 2) any steps you take to make your data inaccessible are in themselves suspicious. Your best defense is not to have anything incriminating on your computer or in the various social media accounts you use. (This advice was given to Australian citizens by their Department of Immigration and Border Protection specifically to Muslims pilgrims returning from hajj. Bizarrely, an Australian MP complained when Muslims repeated that advice.)
The EFF has a comprehensive guide to both the tech and policy of securing your electronics for border crossings.
JaredTheGeek • June 1, 2017 11:18 AM
How sad is it that if I went out of the country again I would just clear my equipment prior to entering since I keep most items in the cloud. Just hand them a wide open phone or computer. That or keep it all on an encrypted thumb drive in your checked bag. The likely hood of that being a concern is low. Its pretty disgusting that as a citizen they get to treat us this way because no enough people care.