All of lore.kernel.org
 help / color / mirror / Atom feed
From: Hans Reiser <reiser@namesys.com>
To: Valdis.Kletnieks@vt.edu
Cc: Reiserfs-List <reiserfs-list@namesys.com>
Subject: Re: Behavior of tails with respect to shred, wipe, etc
Date: Sat, 26 Oct 2002 17:53:52 +0400	[thread overview]
Message-ID: <3DBA9E70.4040703@namesys.com> (raw)
In-Reply-To: 200210260709.g9Q79N8Q012571@turing-police.cc.vt.edu

Valdis.Kletnieks@vt.edu wrote:

>On Sat, 26 Oct 2002 05:41:10 +0400, Hans Reiser said:
>
>  
>
>>Use encryption.  Encryption still leaves you vulnerable to those who can 
>>extract the key out of the owner though.
>>    
>>
>
>If you have multiple users on the same filesystem, key management becomes...
>umm... "interesting".  Projects like loop-AES usually finesse it by only
>having one key per filesystem.
>
>It's 3AM, I'm going to avoid thinking about what's involved if *one* user on
>a multi-user partition needs to change a compromised key.... ;)
>  
>
Try thinking about what happens if you build a distributed filesystem 
with security based on keys, and you want to remove one user from access 
to a file.

;-)


This may be an inherent limitation on key based security.

We are going to allow users to supply whatever key they want to for 
encrypting a file in reiser4.1.  Unfortunately, due to  Halloween, it 
looks like reiser4.0 will have little in the way of new features, and 
all the new stuff will be delayed until 4.1, which will hopefully come 
out sometime around January.

Hans



      reply	other threads:[~2002-10-26 13:53 UTC|newest]

Thread overview: 13+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2002-10-25 15:40 Behavior of tails with respect to shred, wipe, etc Brett Russ
2002-10-25 15:55 ` Nikita Danilov
2002-10-25 16:00   ` Oleg Drokin
2002-10-25 16:09     ` Nikita Danilov
2002-10-26  7:06     ` Valdis.Kletnieks
2002-10-30  2:32     ` Tom Vier
2002-10-30  6:36       ` Oleg Drokin
2002-10-30  7:14         ` Tom Vier
2002-10-25 21:13   ` Brett Russ
2002-10-28 10:01     ` Nikita Danilov
2002-10-26  1:41   ` Hans Reiser
2002-10-26  7:09     ` Valdis.Kletnieks
2002-10-26 13:53       ` Hans Reiser [this message]

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=3DBA9E70.4040703@namesys.com \
    --to=reiser@namesys.com \
    --cc=Valdis.Kletnieks@vt.edu \
    --cc=reiserfs-list@namesys.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.