Re: Please advice me about the whole disk encryption software I bought



The best
recommendation I have for passphrases is to use diceware
(http://world.std.com/~reinhold/diceware.html) along with casino grade dice.

What's the problem with a bad dice? A perfect dice has an entropy of
log(6) = 2.585 bit, while a dice giving 1 with a probability of 1.1/6
and all the other numbers with equal probability has an entropy of
2.583, so who cares?

Even if you get my dice and you know my algorithm, , you can only
conclude that some passwords are more probable than others and start
with them. In a case of perfect dice you'd need to try half of the
possible passwords on the average. I didn't calculated how this
changes due to the bias but I suppose it doesn't change much.
.


Quantcast