[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-disclosure] Hardware-based full disk encryption



Cryptsetup with LUKS is an option, you could build a custom kernel 
and initrd and put it on a UFD...

Elazar

On Wed, 16 Jan 2008 10:38:37 -0500 coderman <coderman@xxxxxxxxx> 
wrote:
>On Jan 16, 2008 4:53 AM, Frank Sanders <franksanders6@xxxxxxxxx> 
>wrote:
>> Can any one recommend such system ?
>
>ingredients:
>- c7 core with padlock crypto engine (8+GBytes/sec AES throughput, 
>no
>crypto penalty)
>- loop-aes multi-key-v3 with key scrubbing and padlock 
>acceleration in
>loonix kernel
>- read only ISO bootloader with gpg and losetup on initrd, then 
>pivot
>into whatever
>
>
>> What are the Pros and Cons and from which vendor(s) do you know 
>that they
>> already integrated it with which security model ?
>
>you want to buy some crap from a (un)trusted third party?  you 
>want
>key escrow too?
>
>don't trust anybody!
>
>:P
>
>_______________________________________________
>Full-Disclosure - We believe in it.
>Charter: http://lists.grok.org.uk/full-disclosure-charter.html

--
Begin a career in graphic design.  Click here for free information.
http://tagline.hushmail.com/fc/Ioyw6h4dFyfbaU31GBDWcyJKNqYR8H3gyR9G6Z6gBjUn0Q7ASUfxjS/
>Hosted and sponsored by Secunia - http://secunia.com/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/