LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 02-28-2005, 02:03 PM   #1
greenthing
Member
 
Registered: Jan 2005
Distribution: Suse 9.3 pro
Posts: 117

Rep: Reputation: 17
Question on the fly encryption


wich is the best on the fly encryption tool that comes with a gui?
 
Old 02-28-2005, 02:25 PM   #2
Matir
LQ Guru
 
Registered: Nov 2004
Location: San Jose, CA
Distribution: Debian, Arch
Posts: 8,507

Rep: Reputation: 128Reputation: 128
Define "on the fly"... look into GPG+gpgme.
 
Old 03-01-2005, 02:20 AM   #3
greenthing
Member
 
Registered: Jan 2005
Distribution: Suse 9.3 pro
Posts: 117

Original Poster
Rep: Reputation: 17
on the fly is a tearm used to discribe a special kind of encryption. Basically it means that the files are allways stored in enqrypted format (usually in i special partition) and only decrypted to the ram.
if you want to know more google it.
 
Old 03-01-2005, 08:33 AM   #4
Matir
LQ Guru
 
Registered: Nov 2004
Location: San Jose, CA
Distribution: Debian, Arch
Posts: 8,507

Rep: Reputation: 128Reputation: 128
So, you want an Encrypted File System? The 2.6 kernel series provides EXCELLENT support for encrypted filesystems, at least in loopback.
 
Old 03-01-2005, 09:06 AM   #5
TruckStuff
Member
 
Registered: Apr 2002
Posts: 498

Rep: Reputation: 30
Look into loop-aes (http://sourceforge.net/projects/loop-aes/). Basically, you setup a partition, but create a separate device to access it. That device consists of the encrypt/decrypt actions for anything passing through it. Then you read/write to/from that device and its all encrypted.

I will also point out something that I realized while reasearching crypto file systems (CFSs). A CFS is of little value if the volume you are crypting is always mounted. If your system is compromised and the volume is already mounted, someone can read/write through the same mechanism that you do, effectively ruining the whole purpose of the CFS. If you have a removable volume (e.g. zip, CD, external HDD, etc), then you need to take care to unmount the volume when it is not in use for maximum security.
 
Old 03-01-2005, 11:12 AM   #6
Matir
LQ Guru
 
Registered: Nov 2004
Location: San Jose, CA
Distribution: Debian, Arch
Posts: 8,507

Rep: Reputation: 128Reputation: 128
Also, encrypted file systems are hard to use for anything that must be mounted at boot time: it requires user input. (I suppose you could store the key somewhere else, but that defeats the point, doesn't it?)
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
tar get on the fly nifflerX Linux - General 3 07-27-2005 10:09 AM
DHCP on the fly orange400 Linux - Networking 2 01-14-2005 12:16 AM
learning to fly . . . shahriars LinuxQuestions.org Member Intro 2 05-24-2003 06:37 AM
Mandrake 9.0 Wireless Works without encryption.. does not with encryption topcat Linux - Wireless Networking 3 05-04-2003 08:47 PM
On the fly CD copying? Wynd Linux - General 3 03-22-2003 02:37 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 07:52 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration