[210] in cryptography@c2.net mail archive
Re: strong file system encryption
daemon@ATHENA.MIT.EDU (Tom Zerucha)
Mon Feb 10 19:23:07 1997
Date: Mon, 10 Feb 1997 18:18:49 -0500 (EST)
From: Tom Zerucha <root@deimos.ceddec.com>
Reply-To: tz@execpc.com
To: Vangelis <vangelis@qnis.net>
cc: cryptography@c2.net, Sneakers Listserver <sneakers@CS.YALE.EDU>
In-Reply-To: <32F2734F.7C37@qnis.net>
Actually, look at the loop device for linux, and
ftp://csclub.uwaterloo.ca/pub/linux-stego/index.html
for the encryption and stego extensions. You can add DES or IDEA over a
file, partition, or device - every block is encrypted, and you can impose
any desired filesystem you have a mkXfs for. Note that linux has to come
up to the point where you can set up the password, but I think it can be
done with the initial ramdisk with only a little effort. It is actually
quite transparent except for the CPU time involved in the en/decryption.
On Fri, 31 Jan 1997, Vangelis wrote:
> Anyone familiar with a utility which maintains data on your HD in a
> strongly-encrypted form, de-crypting in real-time only when the data is
> read.
>
> A simple FAT decryption at startup won't do, because obviously the
> machine can just be turned off then, and the HD extracted and placed in
> another machine for analysis.
>
> Thanks!
>
> BTW, OS/file system can be *nix (supported by Linux preferably), NT, or
> even 95/DOS.
> --
> Vangelis <vangelis@qnis.net> /\oo/\
> Finger for public key. PGP KeyID 1024/A558B025
> PGP Fingerprint AE E0 BE 68 EE 7B CF 04 02 97 02 86 F0 C7 69 25
> Life is my religion, the world is my altar.
>
>
tz@execpc.com
finger tz@execpc.com for PGP key