FS#6054 - Add sha256 kernel module to install CD to facilitate better encrypted volumes

Attached to Project: Arch Linux
Opened by fedde (fedde) - Friday, 22 December 2006, 11:53 GMT
Last edited by Roman Kyrylych (Romashka) - Friday, 22 December 2006, 15:33 GMT
Task Type Feature Request
Category Installation
Status Closed
Assigned To Tobias Powalowski (tpowa)
Architecture not specified
Severity Low
Priority Normal
Reported Version 0.7.2 Gimmick
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 0
Private No

Details

Adding the sha256 kernel module to the Arch install CD will allow people to use aes-cbc-essiv:sha256 as the cypher/mode/iv for encrypting partitions. The current LUKS setup instructions (LUKS_Encrypted_Root on the wiki) uses aes-cbc-plain, which is vulnerable to watermarking attacks. The kernel module will only take up about 15 kB.
This task depends upon

This task blocks these from closing
 FS#6031 - 0.8 installation ISO showstoppers 
Closed by  Tobias Powalowski (tpowa)
Sunday, 31 December 2006, 09:10 GMT
Reason for closing:  Fixed
Comment by Tobias Powalowski (tpowa) - Saturday, 30 December 2006, 16:51 GMT
do you mean the 0.8 alpha isos? there the module is included

Loading...