[24404] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: encrypted file system issues

daemon@ATHENA.MIT.EDU (Perry E. Metzger)
Mon May 1 21:42:21 2006

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
To: "Travis H." <solinym@gmail.com>
Cc: cryptography@metzdowd.com
From: "Perry E. Metzger" <perry@piermont.com>
Date: Mon, 01 May 2006 21:36:59 -0400
In-Reply-To: <d4f1333a0605011537q1f92fa11i3843de3d97dcbade@mail.gmail.com> (Travis
 H.'s message of "Mon, 1 May 2006 17:37:16 -0500")


"Travis H." <solinym@gmail.com> writes:
> On 5/1/06, Perry E. Metzger <perry@piermont.com> wrote:
>> Not if you design it correctly. Disk encryption systems like CGD work
>> on the block level, and do not propagate CBC operations across blocks,
>
> So is it vulnerable to any of the attacks here?
> http://clemens.endorphin.org/LinuxHDEncSettings

Yes, but they are all uninteresting. For example, yes, it is trivially
true that if two 128 bit ciphertext blocks are identical that you can
extract some information about those two blocks, but that only reveals
information about two blocks and the odds of this happening are
microscopic.

> I used to run NetBSD 1.6 IIRC, and for some reason cgd was in previous
> and later releases but not that one.  I found that puzzling.

So do I, since it isn't true.

Perry

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post