Re: GELI - disk encryption for FreeBSD - review request.

From: Joseph Ashwood (ashwood_at_msn.com)
Date: 07/29/05


Date: Fri, 29 Jul 2005 11:27:06 GMT


"Andrew Swallow" <am.swallow@btopenworld.com> wrote in message
news:dcc4na$7p1$1@nwrdmz03.dmz.ncs.ea.ibs-infra.bt.com...
> Joseph Ashwood wrote:
[use entropy collection]
> Entropy collection quickly runs into practical problems.
> For a disk being written to 50 times a second
> 50 * 24 = 1200 bits of entropy per second.
>
> Servers frequently do not even have a mouse to wave around.
> There may be sufficient entropy to change the second key
> variable every time you power up.

That could pose a problem. I'm not entirely certain of the real
requirements, I haven't given those much investigation, for examination I
had simply assumed an infinite number of purely entropic bits were easily
available. I'm sure there's some compromise between pure entropy and CTR
mode that will be secure.
                Joe



Relevant Pages

  • Re: GELI - disk encryption for FreeBSD - review request.
    ... >>Entropy collection quickly runs into practical problems. ... My view is that if you are designing a disk control ...
    (sci.crypt)
  • Re: GELI - disk encryption for FreeBSD - review request.
    ... > Joseph Ashwood wrote: ... >> Even after giving it portions of a day's thoughts I can't see a break ... >> Although I would suggest using entropy collection instead of AES ...
    (sci.crypt)
  • Re: new question
    ... entropy collection, and shows very much how it can and should be done, ... possible entropy source. ... There are issues with it as Microsoft have ...
    (sci.crypt)
  • Entropy collection
    ... A few simple questions on entropy collection: ... Has anybody seen the new lavarnd project? ... Does it appear to be suitable for cryptographic processes? ... Can it be said that if you combine two sources of entropy that the ...
    (sci.crypt)