openSUSE Forums > Archives > SF Archives > ARCHIVES - Software » "encryption" +"air Attack"

Go Back   openSUSE Forums > Archives > SF Archives > ARCHIVES - Software
Forums FAQ Members List Search Today's Posts Mark Forums Read


ARCHIVES - Software Questions about use, installation, or configuration of software running on SUSE Linux

 
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 06-Mar-2008, 13:46
SolarisZen
Guest
 
Posts: n/a
Thumbs up

Hi,

Boy its been a VERY long time since I have posted here! lol :lol: Anyways I am wondering how OpenSuSe stands against the "canned air attack" that has been in the news lately. I have already seen Vista Bit Locker and Mac OS X File Vault fail against this attack so is it the same for OpenSuSe file encryption that it comes with as I use it as my main systems?

I am Running OpenSuSe 10.2 btw and very happy with it. What do you guys think? Is there away to prevent it?

  #2 (permalink)  
Old 06-Mar-2008, 18:00
SolarisZen
Guest
 
Posts: n/a
Default

o.k. so a little research reviles that if one boots down the machine then it will "clear" the ram. This is good if your system is a laptop, but what about us desktop users that leave it constantly running?

I also know that one must have physical access to the machine before the attack can be implemented. However how does one stop the over zealous pro fascist governments from "issuing" a "warrant" then ceasing your computer with important files on it? If they unplug it, then the system does not get a chance to securely over write the key in ram thus they could then cool down the chip, transfer it, make a copy of the key and voila your HD is now exposed.

  #3 (permalink)  
Old 06-Mar-2008, 18:38
ken_yap
Guest
 
Posts: n/a
Default

Make your computer self-destruct if moved.
  #4 (permalink)  
Old 07-Mar-2008, 20:10
SolarisZen
Guest
 
Posts: n/a
Default

Quote:
o.k. so a little research reviles that if one boots down the machine then it will "clear" the ram. This is good if your system is a laptop, but what about us desktop users that leave it constantly running?

I also know that one must have physical access to the machine before the attack can be implemented. However how does one stop the over zealous pro fascist governments from "issuing" a "warrant" then ceasing your computer with important files on it? If they unplug it, then the system does not get a chance to securely over write the key in ram thus they could then cool down the chip, transfer it, make a copy of the key and voila your HD is now exposed.
[/b]

I was thinking, what if SuSe told dm-crypt to securly write out the ram after so many (seconds/minutes/hours) of inactivity from a user?

So if a machine goes to sleep dm-crypt would auto dismount, write out the ram and when woken up a password dialog box will appear.

Of course, how then would a program that is using the encrypted partition function. Unless it does not dismount but just gets rid of any "evidence" of a key during any inactivity. Thus some sort of authentication should be committed?

:blink: :closedeyes:
  #5 (permalink)  
Old 09-Mar-2008, 01:47
elsewhere
Guest
 
Posts: n/a
Default

Quote:
However how does one stop the over zealous pro fascist governments from "issuing" a "warrant" then ceasing your computer with important files on it?
[/b]
Over zealous pro fascist governments have security policies that require external access of keys, via smartcard or USB. That should tell you something...

Cheers,
KV
  #6 (permalink)  
Old 09-Mar-2008, 15:03
SolarisZen
Guest
 
Posts: n/a
Default

Quote:
Over zealous pro fascist governments have security policies that require external access of keys, via smartcard or USB. That should tell you something...

Cheers,
KV
[/b]

So are you telling me that the key should be stored on a usb and or smart card. How do you get SuSe to do such a thing?
 

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




 

Search Engine Friendly URLs by vBSEO 3.3.0 RC2