Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | RE: Whole disk encryption |
|---|---|
| Date: | Tue, 5 Sep 2006 16:31:39 +0200 |
We use SafeBoot on all our laptops and even on a bunch of dekstops. With SafeBoot you can make users, groups, policies etc, so you can assign more than one user to that specific laptop or groups of laptops. Sure you will lose some performance but those laptops will not be used for heavy gaming I assume... You can change all these settings remote if that laptop connects to the internet. For specific data you can also use the content encryption future to encrypt files locally or on the network. You can even make e default folder witch will always encrypt the data inside or by extension. With kind regards, Gerard van der Meer -----Oorspronkelijk bericht----- Van: Denis Jedig [mailto:seclists@syneticon.de] Verzonden: zaterdag 2 september 2006 21:34 Aan: Paul Giddens CC: focus-ms@securityfocus.com Onderwerp: Re: Whole disk encryption Paul Giddens wrote:
GIVEN that, if you are concerned about security and want to use encryption, WHY would you choose to NOT do full disk?
From a functionality perspective the answer is simple: more encryption will cost more performance (unless the disk itself supports en/decryption in real time). From a security perspective: - because you might have a computer used by more than a single person - because you might have a person using more than a single computer (and still wanting to be able to en/decrypt his data everywhere) - because you might have a person who does neither own nor administer a computer and needs the ability to change the encryption keys herself Pretty much like with transport vs. end-to-end encryption there are uses for both types of storage encryption. They might be completing each other in a security solution but will not be able to act as functional substitutes for each other. Denis ------------------------------------------------------------------------ --- ------------------------------------------------------------------------ --- Disclaimer (http://www.tweedekamer.nl/applicaties/disclaimer_e_mail/index.jsp) Indien u de link niet kunt openen, neemt u dan contact op met telefoonnummer 070-3182211. Meer informatie vindt u op de website www.tweedekamer.nl If you are unable to access the link, please dial +31 70 3182211. Additional information is available on the website www.tweedekamer.nl and www.houseofrepresentatives.nl --------------------------------------------------------------------------- ---------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | FW: MST transforms templates from sec persepctive?, Murda Mcloud |
|---|---|
| Next by Date: | Share Permissions, Monrad.DC |
| Previous by Thread: | RE: Whole disk encryption, Galin, Matt (THIP, Corp) |
| Next by Thread: | RE: Whole disk encryption, Steven Hay |
| Indexes: | [Date] [Thread] [Top] [All Lists] |