

When you connect your ledger, your private key STAYS on your ledger. Then make sure to have the Ledger Live app opened and Ledger device plugged in prior to confirming a transaction. But since it's only in your browser storage, it would be a lot easier for a hacker to steal your private key and all your money. If you are having troubles with Ledger + MetaMask on Chrome, make sure you have Ledger Live enabled under settings > advanced. In a basic Metamask wallet, that key is kept in your browser and used to sign transactions that you initiate through Metamask. In MetaMask, click the identicon, select Connect Hardware Wallet > Ledger, and click Continue. Your Ledger device displays Application is ready. So you want to keep that private key safe. Plug your Ledger device into your computer and open the Ethereum (ETH) app on your Ledger device by navigating to the Ethereum icon and pressing both buttons simultaneously. Now, anyone with your private key can sign transactions on your ETH wallet and steal your money. Using elliptic curve cryptography, you can sign transactions that involve your public key using the private key, and that tx verifiably comes from someone with your private key, that's how the network knows it's a real transaction. Your wallet address, starting with 0x, is your public key and is derived from the private key. A 'wallet' is 32 bytes of random data that you own called the private key. It depends on the Operating System and browser you use, and it depends on the version on the ledger firmware and apps, and of the version of MetaMask in your browser.

Let's take a step back at how ETH wallets work. I can use MM with my ledger on chrome / win10 without having to use ledger live.
