[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: rootkit and 10 minutes ?



On Tue, Oct 29, 2002 at 03:44:37PM -0500, Michael T. Babcock wrote:
> It makes no difference if its userspace or not; just make the filesystem 
> encrypted with a large key stored on your keychain (the USB type) and 
> don't store it on the system _at all_.  You want to make it almost as 
> difficult as  a full keyspace search (since they can still cryptanalyse 
> the drive against known filesystem structures).

If someone can use the fs structure (aka. known plaintext attack) then the
cipher is broken outright.  So your argument seems lost.

JLC

-- 
http://www.certainkey.com
Suite 4560 CTTC
1125 Colonel By Dr.
Ottawa ON, K1S 5B6
C: 613.263.2983
-
Linux-crypto:  cryptography in and on the Linux system
Archive:       http://mail.nl.linux.org/linux-crypto/