[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-disclosure] Hardware-based full disk encryption



On Jan 16, 2008 4:53 AM, Frank Sanders <franksanders6@xxxxxxxxx> wrote:
> Can any one recommend such system ?

ingredients:
- c7 core with padlock crypto engine (8+GBytes/sec AES throughput, no
crypto penalty)
- loop-aes multi-key-v3 with key scrubbing and padlock acceleration in
loonix kernel
- read only ISO bootloader with gpg and losetup on initrd, then pivot
into whatever


> What are the Pros and Cons and from which vendor(s) do you know that they
> already integrated it with which security model ?

you want to buy some crap from a (un)trusted third party?  you want
key escrow too?

don't trust anybody!

:P

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/