[COLUG] Encrypted Filesystems

Duane duane at e164.org
Mon Dec 31 11:32:49 EST 2007


Greg Sidelinger wrote:

> So what solutions have others used and what is more likely to become the
> linux standard. I will most likely end up going with the dm-crypt
> solution unless someone has a better solution or a good reason not too.
> As for my USB memory stick solution, I have no idea what to use since I
> want it to be cross platform and free.

There was a big spat some time back by the author of loop-aes (maybe
others too?) about dm-crypt giving a false sense of security due to the
way it integrates or what not, and this highlights a major issue
(combined with the fact of past failures with peer reviews), what can
you ultimately trust if you have no idea?

Recommendations on cryptography could be flawed either unintentionally
due to outdated knowledge, or poor assumptions based on other criteria
such as encryption/decryption speeds, or intentionally misleading or
subverted for the purpose of gaining access to what ever you are trying
to protect.

There is another criteria that always gets brought up, and that is
plausible deniability, if you have something to protect you may not want
others knowing it even exists. TrueCrypt seems to be the software most
mentioned that I've seen for both encryption and plausible deniability.

As before, recommendations can be flawed and I'm not making any
recommendations, just stating facts as best that I can recall.

-- 

Best regards,
 Duane

http://www.freeauth.org - Enterprise Two Factor Authentication
http://www.nodedb.com - Think globally, network locally
http://www.sydneywireless.com - Telecommunications Freedom
http://e164.org - Because e164.arpa is a tax on VoIP

"In the long run the pessimist may be proved right,
    but the optimist has a better time on the trip."


More information about the colug432 mailing list