Re: Sufficient Encryption



Volker Birk wrote:
marst17@xxxxxxxxx wrote:
Are files protected by the encryption of XP Pro and Tiger Firevault
sufficient so that laptops using either are fully protected if lost or
stolen?

Hi,

depends on the attack you want to be secure from.

I'm very sceptical of EFS.

The implementation seems to be fine, but it has problematic semantics.
F.e. it's impossible to transfer EFS-encrypted files when your program
doesn't support NTFS ADS metadata. A simple damage to the EFS metadata
makes the entire file unreadable. A single defective block inside the
file makes an entire 64 KB unreadable. And there're some problems with
locking mechanisms.
.