From mboxrd@z Thu Jan 1 00:00:00 1970 From: markus reichelt Subject: Re: Encrypted Loopback Filesystem Date: Mon, 9 Aug 2004 10:19:03 +0200 Sender: linux-admin-owner@vger.kernel.org Message-ID: <20040809081903.GA9680@lists.notified.de> References: <1091555025.5487.49.camel@bijar.nec-labs.com> Mime-Version: 1.0 Return-path: Content-Disposition: inline In-Reply-To: <1091555025.5487.49.camel@bijar.nec-labs.com> List-Id: Content-Type: text/plain; charset="us-ascii"; x-action="pgp-signed" Content-Transfer-Encoding: 7bit To: linux-admin@vger.kernel.org -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Lei Yang wrote: > I am trying to play around loopback device and want to set up an > encrypted loopback filesystem. I did the following things: One should not use mainline cryptoloop because it is vulnerable to dictionary & watermark attacks. Use loop-AES in multi-key mode with encrypted swap instead. - -- Bastard Administrator in $hell -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.5 (GNU/Linux) iD8DBQFBFzN2LMyTO8Kj/uQRAkyOAJ9GCj9AciKdeiGE7gizUbGPfmaZPwCgjuwB j+iWwLyqUCnDXj9Q4arrh94= =cXup -----END PGP SIGNATURE-----