Use when Ubuntu Linux after adding secret file system,The safety of data can get very good protection.Below this kind of circumstance,Although give a hacker our machine,Want them only without close key,The data that the hacker sees can be one caboodle random code only,Be without use value but character.
The article uses detailed introduction Dm-crypt to establish the method that adds secret file system.Establish the methodological look that adds secret file system with other than,Dm-crypt system is having incomparable advantage:Its rate is rapidder,Use a sex easily stronger.Besides,Its applicable range is very wide also,Can move in all sorts of piece on equipment,Although these equipment used RAID and LVM,also be without an obstacle.Dm-crypt system has these advantages,Main profit from this technology is to build on the Device-mapper character of 2.6 version kernel.Device-mapper is the design is used to be in an actual equipment over add fictitious layer to provide a kind of general and agile means,In order to go to the lavatory mirror of development staff implementation, snapshot, cascade and add wait for processing closely.In addition,Dm-crypt used kernel password to applied process designing interface to come true to be added transparently close,And compatible Cryptloop system.
One, configuration kernel
The interface of password application process designing that Dm -crypt uses a kernel will finish a password to operate.Say commonly,Kernel normally will all sorts of adding secret program the formal to load with module.To 256-bit AES,Its safety strength already special tall,The data that even if uses protective top-secret level is enough also.Accordingly we use 256-bit AES code in the article,The kernel to assure you already module of password of to load AES,Use following command to undertake checking please:
...