Gentoo Archives: gentoo-catalyst

From: Erick M <balkira@×××××.com>
To: gentoo-catalyst@l.g.o
Subject: Re: [gentoo-catalyst] Encrypted livecd's - need testers
Date: Sun, 01 Jul 2007 09:13:52
Message-Id: e47df0b0707010213q5424f6a1g9dc0bec38d0ef47e@mail.gmail.com
In Reply to: [gentoo-catalyst] Encrypted livecd's - need testers by Nelson Batalha
1 Hi,
2
3 I'm confused about why an encrypted livecd would be an interesting feature.
4 Indeed if encryption is about protection, then I just see 2 ways the livecd
5 cd user can be attacked.
6 - while using the OS (real time personal information handling, like login to
7 gmail.com)
8 - after using the OS (like leaving some kind of history somewhere)
9
10 if you consider this, what is the benefit of having the OS encrypted in
11 memory? What kind of attack can be stopped by having encryption rather than
12 a clean OS?
13 >From the network point of view, nothing changes, I do not see any advantages
14 nor differences.
15 >From the system point of view, as a livecd needs no HD, where would a clear
16 OS leave some trails or history? Can we reverse magnetic fields of RAM
17 devices?
18
19 I'm really interested in such topic, please could you explain some scenarios
20 of use/setup in which an encrypted livecd would have advantages over a
21 regular clear livecd?
22
23 Thanks in advance
24
25 erick
26
27
28 On 6/28/07, Nelson Batalha <nelson_batalha@××××.pt> wrote:
29 >
30 > Hi,
31 >
32 > I think I just finished including encryption in Catalyst (for livecd's).
33 >
34 > However this is only my second patch ever, I screwed up my first one
35 > with bugs, and even though I tested this a lot this time, it wouldn't
36 > hurt some more feedback.
37 >
38 > Patch the svn with
39 > http://mega.ist.utl.pt/~nhqb/gentoo/catalyst/catalyst_luks_02.patch
40 >
41 > Documentation is in the livecd-stage2 example.
42 >
43 > Use the linuxrc below and choose 'manual' mode ('keyfile' mode requires
44 > http://bugs.gentoo.org/show_bug.cgi?id=162962). Hopefully this will be
45 > the default genkernel linuxrc.
46 >
47 > http://mega.ist.utl.pt/~nhqb/gentoo/catalyst/linuxrc
48 >
49 > Cheers,
50 > Nelson
51 > --
52 > gentoo-catalyst@g.o mailing list
53 >
54 >

Replies

Subject Author
Re: [gentoo-catalyst] Encrypted livecd's - need testers Nelson Batalha <nelson_batalha@××××.pt>
Re: [gentoo-catalyst] Encrypted livecd's - need testers Nelson Batalha <nelson_batalha@××××.pt>