From: Lars Marowsky-Bree <lmb@suse.de>
To: "Matthew J. Fanto" <mattf@mattjf.com>, linux-kernel@vger.kernel.org
Subject: Re: The Ext3sj Filesystem
Date: Wed, 30 Oct 2002 21:56:52 +0100 [thread overview]
Message-ID: <20021030205652.GC22178@marowsky-bree.de> (raw)
In-Reply-To: <200210301434.17901.mattf@mattjf.com>
On 2002-10-30T14:34:17,
"Matthew J. Fanto" <mattf@mattjf.com> said:
> Encryption/decryption is transparent to the user, so the only thing
> they will need to know is their key, and how to mount a device. We do not
> encrypt the entire volume under the same key as some solutions do (this can
> not only aid in a known-plaintext attack, but it gives the users less
> options). Instead, every file is encrypted seperately under the key of the
> users choice.
Do you encrypt before the data has hit the data journal or after? Does that
work for mmap etc?
> We are also adding support for reading keys off floppies,
> cdroms, and USB keychain drives. Currently, ext3sj supports the following
> algorithms: AES, 3DES, Twofish, Serpent, RC6, RC5, RC2, Blowfish, CAST-256,
> XTea, Safer+, SHA1, SHA256, SHA384, SHA512, MD5, with more to come.
This sounds like something you might want to abstract into a generic
architecture to be shared with the loop device code, or anything which might
need encryption in the kernel. Otherwise it is a PITA to maintain.
And I thought some of those algorithms were strictly signature / hash
algorithms, but you never stop learning ;-)
Sincerely,
Lars Marowsky-Brée <lmb@suse.de>
--
Principal Squirrel
SuSE Labs - Research & Development, SuSE Linux AG
"If anything can go wrong, it will." "Chance favors the prepared (mind)."
-- Capt. Edward A. Murphy -- Louis Pasteur
next prev parent reply other threads:[~2002-10-30 20:50 UTC|newest]
Thread overview: 13+ messages / expand[flat|nested] mbox.gz Atom feed top
2002-10-30 19:34 The Ext3sj Filesystem Matthew J. Fanto
2002-10-30 20:00 ` Andreas Dilger
2002-10-30 21:33 ` Matthew J. Fanto
2002-10-31 16:21 ` Henning P. Schmiedehausen
2002-11-01 1:32 ` Bill Davidsen
2002-10-30 20:28 ` Rik van Riel
2002-10-31 16:36 ` Nicholas Wourms
2002-10-30 20:56 ` Lars Marowsky-Bree [this message]
2002-10-30 21:20 ` Matthew J. Fanto
2002-10-30 21:34 ` Bill Davidsen
2002-10-30 21:40 ` Matthew J. Fanto
2002-11-01 4:41 ` Theodore Ts'o
2002-11-01 5:14 ` Matthew J. Fanto
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20021030205652.GC22178@marowsky-bree.de \
--to=lmb@suse.de \
--cc=linux-kernel@vger.kernel.org \
--cc=mattf@mattjf.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox