<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Kryptoblog &#187; FileVault</title>
	<atom:link href="http://www.strombergson.com/kryptoblog/tag/filevault/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.strombergson.com/kryptoblog</link>
	<description>Kryptografi och IT-säkerhet på svenska</description>
	<lastBuildDate>Thu, 20 Jan 2011 21:25:55 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.4</generator>
<atom:link rel="hub" href="http://pubsubhubbub.appspot.com"/><atom:link rel="hub" href="http://superfeedr.com/hubbub"/>		<item>
		<title>Lite om diskkryptering för Mac</title>
		<link>http://www.strombergson.com/kryptoblog/2009/03/31/lite-om-diskkryptering/</link>
		<comments>http://www.strombergson.com/kryptoblog/2009/03/31/lite-om-diskkryptering/#comments</comments>
		<pubDate>Tue, 31 Mar 2009 02:21:38 +0000</pubDate>
		<dc:creator>Joachim Strömbergson</dc:creator>
				<category><![CDATA[Krypto]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[Verktyg]]></category>
		<category><![CDATA[FileVault]]></category>

		<guid isPermaLink="false">http://strombergson.com/kryptoblog/?p=644</guid>
		<description><![CDATA[<p>Signaturen <em>Kanske</em> st&#228;llde <a href="http://strombergson.com/kryptoblog/2009/03/22/dagens-datorstrul/#comment-36543">en fr&#229;ga om diskkryptering f&#246;r Mac</a>. Vad g&#228;ller Filevault k&#228;nner jag bara till ett par utv&#228;rderingar som gjorts.</p>

	<p><img src="http://upload.wikimedia.org/wikipedia/en/thumb/c/c2/FileVault.png/180px-FileVault.png" alt="FileVault" /></p>

	<p>En bra presentation om hur FileVault i Mac <span class="caps">OS X</span> fungerar &#228;r <em><a href="http://events.ccc.de/congress/2006/Fahrplan/attachments/1244-23C3VileFault.pdf">Unlocking FileVault</a></em> som&#8230;</p>


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[	<p>Signaturen <em>Kanske</em> st&#228;llde <a href="http://strombergson.com/kryptoblog/2009/03/22/dagens-datorstrul/#comment-36543">en fr&#229;ga om diskkryptering f&#246;r Mac</a>. Vad g&#228;ller Filevault k&#228;nner jag bara till ett par utv&#228;rderingar som gjorts.</p>

	<p><img src="http://upload.wikimedia.org/wikipedia/en/thumb/c/c2/FileVault.png/180px-FileVault.png" alt="FileVault" /></p>

	<p>En bra presentation om hur FileVault i Mac <span class="caps">OS X</span> fungerar &#228;r <em><a href="http://events.ccc.de/congress/2006/Fahrplan/attachments/1244-23C3VileFault.pdf">Unlocking FileVault</a></em> som Ralf-Philipp Weinmann och Jacob Appelbaum h&#246;ll p&#229; <a href="http://events.ccc.de/congress/2006-static/static/2/3/r/23rd_Chaos_Communication_Congress_7c1f.html">23:e Chaos Communication Congress 2006</a>. Att d&#246;ma av den presentationen finns det inga fundamentala svagheter i konstruktionen och den b&#228;sta attackvektorn &#228;r (som vanligt) svaga l&#246;senord. Presentationen inneh&#229;ller l&#228;nkar till verktyg f&#246;r att utf&#246;ra brute force-attack samt l&#228;nkar till en del andra dokument. (En liten varning: F&#246;r den som k&#228;nner till <em>Goatse</em> kanske den sista bilden i presentationen kan vara en aning magstark. <img src='http://www.strombergson.com/kryptoblog/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </p>

	<p><em>Sakthiyuvara ja Sakthivelmurugan</em>s artikel <em>Security in FileVault</em> fr&#229;n 2007 inneh&#229;ller &#228;ven den en analys av FileVault. Denna artikel pekar inte heller p&#229; fundamentala svagheter i krypteringen som anv&#228;nds, men p&#229;pekar att det inte &#228;r hela disken som skyddas:</p>

	<p><blockquote><br />
FileVault can&#8217;t possibly be extended with the current design to incorporate a full disk encryption as<br />
many people would want to. But its possible to do; to have a full disk encryption the boot process<br />
has to be modiﬁed to understand the decryption technique and more enhancements so that the<br />
encrypted disk image can be mounted from which the OS should start booting.</p>

	<p>The speed of the  system may go down considerably considering the number of encryption and decryption operation that has to occur and a single disk image will be a point point of failure for corruption. Recovering corrupted image will be hurdle that has to be ﬁxed.FileVault can&#8217;t possibly be extended with the current design to incorporate a full disk encryption.</p>


	<p>FileVault was meant to encrypt home directories for which it is perfectly designed and have the<br />
security features.<br />
</blockquote></p>

	<p>Det kan vara v&#228;rt att notera att b&#229;da dessa k&#228;llor &#228;r fr&#229;n 2006 respektive 2007, det &#228;r inte givet att det som st&#229;r i dessa k&#228;llor g&#228;ller i dag. <a href="http://en.wikipedia.org/wiki/FileVault">Wikipedias sida om FileVault</a> tar upp en del aspekter med FileVault, pekar p&#229; tidigare problem samt <a href="http://voices.washingtonpost.com/securityfix/2008/07/black_hat_talk_on_apple_encryp_1.html">en h&#228;ndelse fr&#229;n 2008</a> som dock inte ger s&#229; mycket fakta om FileVault i sig.</p>

	<p>Litar man inte p&#229; FileVault finns det flera alternativ/komplement v&#228;rda att titta n&#228;rmare p&#229;. <a href="http://strombergson.com/kryptoblog/2009/03/22/dagens-datorstrul/#comment-36544">Signaturen scrp pekade p&#229;</a> utm&#228;rkta <a href="http://www.truecrypt.org/">Truecrypt</a>.</p>

	<p>Ett annat alternativ &#228;r <em><a href="http://www.pgp.com/products/wholediskencryption/index.html"><span class="caps">PGP </span>Whole Disk Encryption</a></em> som jag dock inte har n&#229;gon personlig erfarenhet av, men som att d&#246;ma av kommentarar p&#229; n&#228;tet verkar g&#246;ra ett bra jobb. Du hittar dock inte s&#229; mycket s&#228;kerhet p&#229; <a href="http://www.pgp.org/">www.pgp.org</a>...</p>

	<p><strong>Uppdatering 2009-03-31:</strong><br />
MagnusB p&#229;pekade att om man anv&#228;nder FileVault b&#246;r man st&#228;nga av <em>SafeSleep</em> i OS:et. Detta &#228;r &#228;ven n&#229;got de tar upp i presentationen:</p>

	<p><blockquote><br />
Safe sleep is invoked when power runs critically low</p>
 &#8211; Memory contents written to /var/vm/sleepimage

	<p>Safe sleep is careful but not careful enough&#8230;</p>
 &#8211; If encrypted swap is on:
 &#8211;contents of the sleep image will be encrypted, but  key will be written out in the header (xnu-792.13.8)<br />
</blockquote>

	<p>MagnusB p&#229;pekar &#228;ven att <a href="http://www.checkpoint.com/products/datasecurity/pc/index.html">Checkpoint har en produkt f&#246;r <span class="caps">FDE </span>(Full Disc Encryption)</a> f&#246;r Mac.</p>

 <div class="shr-publisher-644"></div>

<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.strombergson.com/kryptoblog/2009/03/31/lite-om-diskkryptering/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

