Subject: Re: vinum vs. cryptographic filesystem (cgd)
To: Roland Dowdeswell <elric@imrryr.org>
From: Steven M. Bellovin <smb@research.att.com>
List: current-users
Date: 10/13/2003 15:39:18
In message <20031013190340.6892F174D6@arioch.imrryr.org>, Roland Dowdeswell wri
tes:
>On 1066068907 seconds since the Beginning of the UNIX epoch
>Michael Graff wrote:
>>
>
>>Also, is anyone using cgd in "clever" ways?  I'd love to see a USB
>>dongle that I could pull from the machine and have access to disks
>>vanish, but as long as I provided a key on powerup, would allow
>>re-mounting disks.
>
>Well, admittedly I haven't actually done it but the design allows
>for that sort of behaviour.  If you store the paramsfile on a USB
>dongle and have a storedkey in it, then it should not be too
>difficult to write some scripts that DTRT when the dongle is pulled
>in and out.
>

See the just-finished discussion on interfaces appearing and 
disappearing -- we need the same thing here for USB dongles.


		--Steve Bellovin, http://www.research.att.com/~smb