On 11/05/2014 01:27 AM, Mikulas Patocka wrote: > So you really need cryptographic hashes instead of checksums to avoid the > collisions. I am not sure if it was mentioned but also see how integrity is implemented in FreeBSD GELI system by playing with sector sizes http://svnweb.freebsd.org/base/head/sys/geom/eli/g_eli_integrity.c?view=co Also, for encrypted devices (either on file level or block level) I think there are still requests for implementing real crypto authenticated modes (like GCM) which obviously need similar space for auth tag. (I think ZFS uses it this way.) Milan -- dm-devel mailing list dm-devel@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/dm-devel