Disk encryption (not only) in Linux

Milan Broz
Red Hat DevConf 2012

Disk encryption (not only) in Linux

FDE

FDE cont.

Block device, sector

Ciphertext,plaintext

Cipher block mode, IV

Cipher block mode - examples

Block mode vs sector

Disk vs data channel encryption

Key management

Key generator

Key storage

Key removal

Key recovery

Attacks...

Attacks (short)

FDE examples

Chipset FDE

Chipset FDE cont.

Truecrypt

loop-AES

BitLocker

BitLocker cont.

LUKS, dm-crypt

Kernel dm-crypt

LUKS header

EOF

Download PDF version