Sesame overlap with LUKS

David Zeuthen david at fubar.dk
Mon Jan 17 17:25:43 PST 2005


On Mon, 2005-01-17 at 16:38 -0600, W. Michael Petullo wrote:
> David Zeuthen's "sesame" proposal may have some overlap with the LUKS
> project.  From the LUKS project description:
> 
> > LUKS works by prepending a partition header (luks_phdr) to the
> > partition, where setup information like cipher, keysize is stored
> > as well as key slots.  A key slots is holding an encrypted version
> > of the master key. The master key is used to encrypt bulk data. It
> > will never be stored to disk directly, but encrypted version of the
> > master key will be stored. To be more precise, every version of the
> > master key is encrypted by a different passphrase and stored a
> > separate key slot. The user needs to provide one passphrase only,
> > since any correct passphrase will restore a copy of the master key.
> 
> More information about the LUKS project may be found here:
> 
> http://clemens.endorphin.org/LUKS
> 

Interesting, I will read up on that.

> Should the hal folks work with the LUKS folks instead of trying to design
> another crypto-metadata system?
> 

Makes sense to me, FWIW.

Cheers,
David


_______________________________________________
hal mailing list
hal at lists.freedesktop.org
http://lists.freedesktop.org/mailman/listinfo/hal



More information about the Hal mailing list