User: Password:
Subscribe / Log in / New account

Kernel key management

Kernel key management

Posted Nov 22, 2006 13:44 UTC (Wed) by NAR (subscriber, #1313)
Parent article: Kernel key management

I was wondering - what's better (faster, safer, etc.) for local disks (e.g. for disks in laptops that could be easily stolen): encrypt a filesystem or encrypt the block device under the filesystem?


(Log in to post comments)

Kernel key management

Posted Nov 22, 2006 19:21 UTC (Wed) by arjan (subscriber, #36785) [Link]

technically it's "Safer" to encrypt the device as a whole, there can't then be leaked blocks from files that moved all over the disk..

HOwever encrypting files is more convenient for several things: for example if you need to legally remove all data from a certain person... all you need to do is destroy his key now, and that takes care automatically of all your backup tapes too ;)

Copyright © 2017, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds