View Single Post
Posts: 292 | Thanked: 131 times | Joined on Dec 2009
#25
Originally Posted by Joorin View Post
I'm only talking about encrypted file systems and not files encrypted one by one. Situation A has, as far as I know, never been mentioned by me (apart form a suggestion for encryption of separate files before venturing into FS land).
Ok. I thought this discussion was following the method of generating on big file with /dev/ramdom and using it as a container for encrypted files, mounted as a loopback device. If the original file was created with all zeros, for example, an attacker could know (or guess) the parts of the filesystem where there was actual encrypted data on.

Last edited by soeiro; 2010-05-26 at 21:53.