Encrypted filesystems

Poul-Henning Kamp phk at phk.freebsd.dk
Thu Jun 26 16:48:36 PDT 2003


In message <200306262335.h5QNZBNF003209 at agora.fsl.cs.sunysb.edu>, Erez Zadok wr
ites:
>In message <3EFB4792.5080805 at tenebras.com>, Michael Sierchio writes:
>> Peter B wrote:
>[...]
>> > Which operating systems manage to effectivly to use encrypted swap..?
>> 
>> That's quite a different problem -- Poul-Henning Kamp's done work
>> in GEOM based disk encryption which is directly applicable to
>> encrypting swap.  Key management is always interesting.
>
>You might check the work/papers by Niels Provos on encrypted swap.
>
>We've been working on this problem for our NCryptfs.  To provide a
>comprehensive solution, we have to also handle swap.  Luckily in Linux,
>there are specific VOPs and APIs that make it easy to hook a crypto f/s w/
>the swap.

I will present a paper on the GBDE encrypted disk facility at BSDcon2003.

-- 
Poul-Henning Kamp       | UNIX since Zilog Zeus 3.20
phk at FreeBSD.ORG         | TCP/IP since RFC 956
FreeBSD committer       | BSD since 4.3-tahoe    
Never attribute to malice what can adequately be explained by incompetence.


More information about the freebsd-fs mailing list