Re: Bug in cryptsetup?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi Chris

I think adding a trace to each FAQ article is overkill.
I also do not expect to put a lot into the version specific 
section. 

While the FAQ should be correct, current, etc. it is 
significantly better to have one that is actually there than 
one that is overengineered enought that it never gets written.
I also think that I do a pretty good job of checking what I 
put in there without being one of the developers...

As to the security questions you raidse, you are welcome to
contribute the relevant articles to the FAQ, just send them 
to me or to wait until I find the time to add them. Could 
take a while thogh.

Arno




On Sun, Jun 20, 2010 at 12:26:15AM +0200, Christoph Anton Mitterer wrote:
> Hi Arno.
> 
> Nice to see that you've used a separate section for legacy stuff in the
> FAQ :)
> 
> I guess for something like crpytsetup (with its active development and
> changes to crypto theory) it's important for a FAQ that it's really
> always up to date and double checked for correctness by the developers.
> 
> Therefore, may I suggest to add information to each FAQ point for/during
> which version of cryptsetup it was created?
> Of course this would required to check all entries again when a new
> version comes out (whether they still are correct) and update the
> version info.
> 
> 
> btw: May I suggest to add the questions I put up here some weeks ago ...
> about which is the "securest" algo, keysizes when using XTS,
> essiv/benbi/plain when using XTS, how the masterkey is generated
> using /dev/urandom (at least currently) and that one should not manually
> use /dev/random as Milan said, etc.
> 
> It may also be nice to add that LRW is insecure, at least this is the
> case AFAIK, and that therefore XFS was created.
> 
> 
> Cheers,
> Chris.



> _______________________________________________
> dm-crypt mailing list
> dm-crypt@xxxxxxxx
> http://www.saout.de/mailman/listinfo/dm-crypt


-- 
Arno Wagner, Dr. sc. techn., Dipl. Inform., CISSP -- Email: arno@xxxxxxxxxxx 
GnuPG:  ID: 1E25338F  FP: 0C30 5782 9D93 F785 E79C  0296 797F 6B50 1E25 338F
----
Cuddly UI's are the manifestation of wishful thinking. -- Dylan Evans

If it's in the news, don't worry about it.  The very definition of 
"news" is "something that hardly ever happens." -- Bruce Schneier 
_______________________________________________
dm-crypt mailing list
dm-crypt@xxxxxxxx
http://www.saout.de/mailman/listinfo/dm-crypt


[Index of Archives]     [Device Mapper Devel]     [Fedora Desktop]     [ATA RAID]     [Fedora Marketing]     [Fedora Packaging]     [Fedora SELinux]     [Yosemite News]     [KDE Users]     [Fedora Tools]     [Fedora Docs]

  Powered by Linux