portably encrypting a file system's partition, directory and/or file

portably encrypting a file system's partition, directory and/or file

Secure Home | Search | About
 Microsoft Applications Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
portably encrypting a file system's partition, directory and/or file news 11-25-2005
Posted by news on November 25, 2005, 3:30 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Hi *,

I have firewire and USB devices with partitions/logical drives, whole
directories and/or files I would like to encrypt. The thing is that I
need to be able to just plug in the thing on any x86 machine running a
commercial OS that would just take it (and AFAIK the only filesystem
that even a MAC would seamlessly 'mount' is vfat/FAT32)

is there anyway to do that?

I have read quite a bit about it and I still don't find exactly what I
need.

Also, why exactly does encryption belong in the kernel? I think once
you make it a kernel-depending functionality 'portability' to other OS
goes out the window

Are there libraries out there (of course, preferably OSS ones) which
you could compile for different OS and have access to pluggable
devices?

I crossposted this message, becuase to me, these portability and security
questions reach out into different subject areas

thanx
otf


Posted by karl levinson, mvp on November 26, 2005, 7:47 am
If you were  Registered and logged in, you could reply and use other advanced thread options
I'm not sure if such a thing exists. The main disk encryption solution I
could find for Mac is PGP, and it only supports Mac and Windows, and you
have to install its software first.

http://www.pgp.com/products/desktop/professional/pgpwholedisk.html
http://www.infoanarchy.org/wiki/index.php/Hard_Disk_Encryption#Software
http://www.thex.com/security/category/os/mac/

WinMagic reportedly inserts its encryption code into the BIOS pre-boot, but
it only comes in flavors for Windows, must be installed first, and it might
require a PKI.

These solutions appear to be special portable external firewire hard drives
with OS-independent encryption:
http://www.firewiremax.com/fire-wire-1394-ilink/securedisk.html

I think you'll need to either buy special hardware-encrypted drives or
settle for encryption software that you can install onto multiple platforms.
PGP and GPG may be your best bet there for supporting the most OSes,
although distributing private keys securely and conveniently becomes a
challenge. It might also be one of the only free solutions to support this
many OSes.

This article says pretty much the same thing, that there is no one solution
and you'll have to evaluate several and choose the one that meets most of
your specific requirements. It also describes a bunch of products you might
consider. Skip down to the section titled "Disk encryption across the
enterprise."
http://www.fcw.com/article87865-01-23-05-Print


> Hi *,
>
> I have firewire and USB devices with partitions/logical drives, whole
> directories and/or files I would like to encrypt. The thing is that I
> need to be able to just plug in the thing on any x86 machine running a
> commercial OS that would just take it (and AFAIK the only filesystem
> that even a MAC would seamlessly 'mount' is vfat/FAT32)
>
> is there anyway to do that?
>
> I have read quite a bit about it and I still don't find exactly what I
> need.
>
> Also, why exactly does encryption belong in the kernel? I think once
> you make it a kernel-depending functionality 'portability' to other OS
> goes out the window
>
> Are there libraries out there (of course, preferably OSS ones) which
> you could compile for different OS and have access to pluggable
> devices?
>
> I crossposted this message, becuase to me, these portability and security
> questions reach out into different subject areas
>
> thanx
> otf
>



Similar ThreadsPosted
Encrypting VBA code behind Excel File August 6, 2007, 12:10 pm
Check access to file/directory September 26, 2005, 3:17 am
Check access to file/directory September 26, 2005, 3:18 am
hosts file references to another "master" host file November 21, 2006, 5:34 pm
Execute File Auditing on a File Share April 25, 2007, 11:46 pm
If I have created recovery image in a hidden partition, should I creat bootable rescue media in addition? October 30, 2006, 4:59 am
Securing or encrypting local ethernet? (howto) December 16, 2005, 5:59 am
Error getting while Encrypting the data on final step of handshaking December 22, 2005, 4:12 am
how to get pwd of a file July 25, 2006, 4:31 pm
Re: HOSTS file??? June 24, 2005, 8:35 am

The site map in XML format XML site map

Contact Us | Privacy Policy