[Top] [All Lists]

Re: encryption

To: "'linux-xfs@xxxxxxxxxxx'" <linux-xfs@xxxxxxxxxxx>
Subject: Re: encryption
From: Christian Widmer <cwidmer@xxxxxxxxxxxx>
Date: Thu, 5 Jul 2001 17:47:21 +0200
In-reply-to: <47CB5BFBF511D411A3AC00508BC8636B267BD3@DEBITECH11>
References: <47CB5BFBF511D411A3AC00508BC8636B267BD3@DEBITECH11>
Reply-to: cwidmer@xxxxxxxxxxxx
Sender: owner-linux-xfs@xxxxxxxxxxx
the idea is not new (exept using xfs maybe). the new suse7.2 distribution
has support for encryted file system. and it looks like it does't matter what
filesystem you use. there is a description on their german homepage, un-
fortunately in germen. it uses the loop device to add an additional layer.

setup a encryted device:
 $modprobe loop_fish2
 $losetup -e twofish /dev/loop0 /dev/hda3
 $mkdir /topsecret
 $mkreiserfs /dev/loop0
 $mount -t reiserfs /dev/loop0 /topsecret


On Thursday 05 July 2001 17:18, you wrote:
> i am interested in encrypted filesystems and was wondering if xfs would be
> good to encrypt...
> my thoughts was to intercept the reading/writing of inodes from/to disk and
> doing the en-decryption there...
> the passphrase for the encryption would be entered during the mounting of
> the filesystem (and deleted from memory during the unmount!)...
> so my questions...
> is there a technical reason why xfs is unsuitable for this???
> has anybody thought about this before???
> i have found a method called 'xfs_iflush_int' does all writing to the hard
> disk go through here, or are there many places in the code that would need
> to be modified for decrypting/encrypting???
> is this a stupid idea??? :)
> steve...
> ps i hope this is the right place to send this message...
> pps is there anybody else interesed???

christian widmer
zurlindenstrasse 294, 8003 zurich, switzerland
email:  cwidmer@xxxxxxxxxxxx
phone: ++41 (0)1 491 03 68

<Prev in Thread] Current Thread [Next in Thread>