Full Disclosure mailing list archives

Re: Hardware-based full disk encryption


From: "Elazar Broad" <elazar () hushmail com>
Date: Wed, 16 Jan 2008 12:18:33 -0500

Cryptsetup with LUKS is an option, you could build a custom kernel 
and initrd and put it on a UFD...

Elazar

On Wed, 16 Jan 2008 10:38:37 -0500 coderman <coderman () gmail com> 
wrote:
On Jan 16, 2008 4:53 AM, Frank Sanders <franksanders6 () gmail com> 
wrote:
Can any one recommend such system ?

ingredients:
- c7 core with padlock crypto engine (8+GBytes/sec AES throughput, 
no
crypto penalty)
- loop-aes multi-key-v3 with key scrubbing and padlock 
acceleration in
loonix kernel
- read only ISO bootloader with gpg and losetup on initrd, then 
pivot
into whatever


What are the Pros and Cons and from which vendor(s) do you know 
that they
already integrated it with which security model ?

you want to buy some crap from a (un)trusted third party?  you 
want
key escrow too?

don't trust anybody!

:P

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html

--
Begin a career in graphic design.  Click here for free information.
http://tagline.hushmail.com/fc/Ioyw6h4dFyfbaU31GBDWcyJKNqYR8H3gyR9G6Z6gBjUn0Q7ASUfxjS/
Hosted and sponsored by Secunia - http://secunia.com/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: