[76390] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: It's a Presidential Mandate, Feds use it. How come you are not

daemon@ATHENA.MIT.EDU (Steven M. Bellovin)
Tue Jan 16 18:33:11 2007

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Tue, 16 Jan 2007 17:03:52 -0500
From: "Steven M. Bellovin" <smb@cs.columbia.edu>
To: "Saqib Ali" <docbook.xml@gmail.com>
Cc: "Jonathan Thornburg" <jthorn@aei.mpg.de>,
	cryptography@metzdowd.com
In-Reply-To: <addede3b0701160858o4bcf79a5uc1dc8b7d6f3a51e5@mail.gmail.com>

On Tue, 16 Jan 2007 08:58:27 -0800
"Saqib Ali" <docbook.xml@gmail.com> wrote:

> > Yes, encrypted disks aren't much good unless the OS also encrypts
> > (at least) swap space.  I note that OpenBSD ships with swap-space
> 
> I think you are confusing "Disk Encryption" with "Full Disk Encryption
> (FDE)". They are two different beast.
> 
> FDE encrypts the "entire" boot drive, including the OS, kernel and the
> swap space.
> 
> Disk Encryption, on the other hand, only encrypts the non-OS portion.
> 
> saqib
> http://www.full-disk-encryption.net
> 

I don't think that that distinction is either necessary or sufficient.


		--Steve Bellovin, http://www.cs.columbia.edu/~smb

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post