Quick dm-crypt questions

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hey,

I've got two questions abour dm-crypt/LUKS.

- Does dm-crypt/LUKS employ any RAM anti-forensics? In particular,
what is the danger of a master key being "burnt-in" into the RAM, if a
certain container is mounted for an extended period of time (a few
years)? Is the master key being periodically moved around in RAM (this
acts like a screen-saver or rather a RAM-saver) or does it reside at a
static location after the container is mounted?

- Is it possible to separate the LUKS header from the encrypted data?
Normally when a partition is luksFormat-ted it will generate a LUKS
header on that partition at the very beginning of space. But I was
wondering, if it's possible to have only the encrypted data on the
partition, and move the LUKS header somewhere else i.e. a file on a
USB stick?


Regards!
_______________________________________________
dm-crypt mailing list
dm-crypt@xxxxxxxx
http://www.saout.de/mailman/listinfo/dm-crypt




[Index of Archives]     [Device Mapper Devel]     [Fedora Desktop]     [ATA RAID]     [Fedora Marketing]     [Fedora Packaging]     [Fedora SELinux]     [Yosemite News]     [KDE Users]     [Fedora Tools]     [Fedora Docs]

  Powered by Linux