D 2018

Practical Cryptographic Data Integrity Protection with Full Disk Encryption

BROŽ, Milan, Mikuláš PATOČKA and Václav MATYÁŠ

Basic information

Original name

Practical Cryptographic Data Integrity Protection with Full Disk Encryption

Authors

BROŽ, Milan (203 Czech Republic, guarantor, belonging to the institution), Mikuláš PATOČKA (203 Czech Republic) and Václav MATYÁŠ ORCID (203 Czech Republic, belonging to the institution)

Edition

Cham, 2018 IFIP International Conference on ICT Systems Security and Privacy Protection, p. 79-93, 15 pp. 2018

Publisher

Springer

Other information

Language

English

Type of outcome

Proceedings paper

Field of Study

10200 1.2 Computer and information sciences

Country of publisher

Switzerland

Confidentiality degree

is not subject to a state or trade secret

Publication form

printed version "print"

References:

RIV identification code

RIV/00216224:14330/18:00103683

Organization unit

Faculty of Informatics

ISBN

978-3-319-99827-5

Keywords in English

Full Disk Encryption; Linux; cryptographic integrity protection

Tags

International impact, Reviewed
Changed: 31/5/2022 14:21, RNDr. Pavel Šmerk, Ph.D.

Abstract

V originále

Full Disk Encryption (FDE) has become a widely used security feature. Although FDE can provide confidentiality, it generally does not provide cryptographic data integrity protection. We introduce an algorithm-agnostic solution that provides both data integrity and confidentiality protection at the disk sector layer. Our open-source solution is intended for drives without any special hardware extensions and is based on per-sector metadata fields implemented in software. Our implementation has been included in the Linux kernel since the version 4.12.