[76390] in cryptography@c2.net mail archive
Re: It's a Presidential Mandate, Feds use it. How come you are not
daemon@ATHENA.MIT.EDU (Steven M. Bellovin)
Tue Jan 16 18:33:11 2007
X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Tue, 16 Jan 2007 17:03:52 -0500
From: "Steven M. Bellovin" <smb@cs.columbia.edu>
To: "Saqib Ali" <docbook.xml@gmail.com>
Cc: "Jonathan Thornburg" <jthorn@aei.mpg.de>,
cryptography@metzdowd.com
In-Reply-To: <addede3b0701160858o4bcf79a5uc1dc8b7d6f3a51e5@mail.gmail.com>
On Tue, 16 Jan 2007 08:58:27 -0800
"Saqib Ali" <docbook.xml@gmail.com> wrote:
> > Yes, encrypted disks aren't much good unless the OS also encrypts
> > (at least) swap space. I note that OpenBSD ships with swap-space
>
> I think you are confusing "Disk Encryption" with "Full Disk Encryption
> (FDE)". They are two different beast.
>
> FDE encrypts the "entire" boot drive, including the OS, kernel and the
> swap space.
>
> Disk Encryption, on the other hand, only encrypts the non-OS portion.
>
> saqib
> http://www.full-disk-encryption.net
>
I don't think that that distinction is either necessary or sufficient.
--Steve Bellovin, http://www.cs.columbia.edu/~smb
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com