期刊文献+

LUKS加密卷的离线解密技术分析

Analysis of Decrypting LUKS Encrypted Volume Offline
下载PDF
导出
摘要 LUKS是Linux系统下的常用的磁盘加密技术之一,通用于Linux的各个版本,具有支持多用户/密码对同一个设备的访问、加密密钥不依赖密码、可以改变密码而无需重新加密数据、采用一种数据分割技术来保存加密密钥保证密钥的安全性等特点。针对目前取证软件无法直接对LUKS加密分区的快速取证的问题,文章首先研究了LUKS加密分区的加密原理,并在此基础上提出了LUKS的解密方法,能够摆脱对Linux系统的依赖,极大提高了取证效率。 LUKS as one of the popular disk encryption technology is common to all versions of Linux and has characteristics as follows: support multi-user / password access to the same device;master key does not rely on user password, the user password can be changed without re-encrypting the user data;use anti-forensic splitter to store the encrypted master key for the sake of safety. Given that most of current forensic software cannot obtain forensics quickly on LUKS volume, this paper researches the principles of LUKS encryption, and based on this, proposes a LUKS decryption method, dependent on the Linux system. This method can greatly improve the forensic efifciency.
出处 《信息网络安全》 2014年第9期217-219,共3页 Netinfo Security
关键词 主密钥 密钥槽 分割的主密钥 取证 LUKS LUKS master key key slot split master key forensics
  • 相关文献

参考文献8

  • 1Wikipedia. Comparison of disk encryption software[EB/OL], http://en.wikipedia.org/wiki/Comparison_of_disk_encryption_software. 2()14—07-30.
  • 2Nemesis. LUKSManager[EB/OL]. http://nemesis2.qx.net/pages/LUKSManager. 2012-11-02.
  • 3Redhat. RedHat Enterprise Linux 6 Security Guide[EB/OL]. https://access.redhat.com/site/documentation/en—US/Red_Hat_Enterprise_Linux/6/html/Security_Guide/sect—Security_Guide—LUKS_Disk_Encryption.html. 2014—07-30.
  • 4ClemensFruhwirth. TKS1—An anti—forensic, two level, and iterated keysetup scheme[EB/OL], http://tomb.dyne.org/TKSl—draft.pdf. 2004—06—15.
  • 5ClemensFruhwirth. LUKS On—Disk Format Specification Version1.1.1 [EB/OL]. http://tomb.dyne.org/Luks_on_disk_format.pdf. 2008—12-08.
  • 6B.Kaliski,RSA Laboratories. RFC 2898; PKCS#5: Password basedcryptography specification version 2.G[EB/OL]. http://tools.ietf.org/html/rfc2898. 2000-09-01.
  • 7Clemens Fruhwirth. AFsplitter—Anti—forensic Information Splitter[EB/OL]. http://clemens.endorphin.org/AFspljtter. 2014-07—30.
  • 8维基百科.分组密码[EB/OL].http:/1zh.wikipedia.org/wiki/%E5%88%86%E7%BB%84%E5%AF%86%E7%A0%81. 2013-9-24.

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部