Traveling in today’s age of technology is a lot easier than in the past. You can start your journey in the morning of one country and be half way across the world by nights end. When traveling, data security is usually always at the forefront of my mind. I recently traveled to a conference. While this isn’t all that usual (I travel about once a month on average) this time it was different. I was traveling internationally to England to speak at SQL Bits. It was a glorious conference and I was really excited to go, however while preparing to travel, I made sure to review my security measures so that I could enjoy my trip and not be worried.
Full Disk Encryption
If your laptop (or laptops in my case) don’t already have hard drive encryption enabled, you are doing it wrong. As a user of both Windows and Apple hardware, enabling this security feature is painless and just easy to do. Hard drive encryption happens behind the scenes and should not cause any type of performance hit when it is enabled.
FileVault for Apple – FileVault is the way to go if you are Mac user. It’s built into the operating system and does not have any restrictions (that I know of) in terms of versions. If you have been using your laptop for a bit without this enabled, when you do enable it, it may take some time to get everything encrypted appropriately. I had been using my laptop for years without encryption enabled so when I made the switch, I did so over a weekend where I could let it sit. However, you can enable it and continue to work just keep in mind that it might be slower as it’s encrypting all the bits.
Bitlocker for Windows – Bitlocker is the way to go if you are in the Windows eco-system. It’s easy to enable and does not introduce any type of performance overhead. My Surface (provided to me by my employer) already came encrypted. Bitlocker, unfortunately, is not available for the Windows Home version, however you pay $99 to upgrade your operating system to Windows Pro which would then come with Bitlocker. In my opinion, having that full disk encryption is worth every penny of $99 however if that is above your price point there are other alternatives on the market such as VeraCrypt. Make sure that you research those alternatives closely and understand the process on how to encrypt/decrypt your hard drive. If done wrong, the data that you could loose could be yours.
In short, having the peace of mind knowing that if my laptop is stolen, most likely nobody is going to be able to retrieve any sensitive information that I might have on the laptop. Even when traveling domestically, just enabled it and have that peace of mind.
You’ll thank me later.
Password Managers such as 1Password, LastPass, or KeePass should be a part of your daily routine. If you are continuing to utilize the same password for all of your accounts (both online & offline) you are begging for a hacker to break in. Once they have been able to brute force your password, your kingdom is now theirs. I personally use 1Password (and have for years) simply because they offer up several features that I really like.
One of these features is the Travel Mode. Travel Mode is pretty simple in that it removes any password vault marked as “not safe for travel” from your devices. It does not hide them or mask them, it removes them completely. Once you reach your destination, you can simple turn off Travel Mode and the vaults will then be sync’d once again. This really helps to ensure that any unwarranted search of your device will not find any passwords which could be then used against you. You can mark certain vaults as “safe for travel” and those will not be removed from your devices.
If you are traveling to a country where unwarranted searches of your device might happen, this is a great way to elevate those concerns.
Note: Microsoft MVP & Security Expert Troy Hunt uses 1Password so take that into consideration.
I consider my passport as sensitive information thus I want to protect it as best as possible whenever I travel. In addition to my US Driver’s license, I also travel with my passport so that I have a secondary method to authenticate my identity. The United States passport (as well as many other countries) has an RFID chip built into the cover. This means that someone with a RFID scanner and who is near my passport could scan it. While the amount of information contained on the chip is most likely limited, I don’t like to give anybody any type of personal information unless I absolutely must. Especially if I don’t even know that it’s happening
One way to protect your passport against RFID scanning is to purchase a sleeve for it. These are inexpensive sleeve’s which your passport would slid into and be shielded from a RFID scanner. They are easy to use and gives me peace of mind when I travel.
Another consideration when it comes to your passport, is have a secondary copy available somewhere, preferably off site. In my case, I use a cloud provider (like Dropbox, OneDrive, Google, etc) with an encrypted copy of my passport in which certain family members have access to. If my passport is stolen or mis-placed, I can either access it directly from my Cloud provider or I can contact a family member to get me a copy of my passport. While this copy will not be enough to gain access to air travel or cross borders, it would at least give the local US Embassy information that can be used to authenticate who I am.
Whenever I am away from my home network, data security concerns are always present. I work with a number of clients and I always want to ensure that I am protecting their data as well as mine as best as possible. Therefore, when I am traveling anywhere and I need to access the internet, I use a VPN service. In my case, I use my own VPN server that I stood up in Azure. Having a VPN service available makes sure that all of my internet traffic is encrypted and secured away from any prying eyes. Depending on where you are traveling too, you might look at various 3rd party VPN services to ensure that they have a VPN endpoint as close to your destination as possible. In my case, my VPN server is located in the East US region in Azure and even across the Atlantic Ocean the speed was sufficient for what I needed.
My VPN solution also allowed me to use a VPN connection on my phone. I have a newer iPhone but with OpenVPN I was able to get a secure connection when utilizing the hotel Wifi.
It is really exciting to be able to travel, especially when that travel takes you across borders and around the world. These simple items I’ve listed above will help to secure your data. Unauthorized access to your data can really ruin your travel plans, so take a few moments to go over them as well as anything else that might be critical for you. Remember, the data that you might save could be your own!
If you are a frequent traveler, what do you do to secure your data? I’d love to know so that I can be more secure!
© 2019, John Morehouse. All rights reserved.
Contact the Author | Contact DCAC