| Summary: | Poor cipher choice when creating an encrypted filesystem. | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | Dave Hodgins <davidwhodgins> |
| Component: | RPM Packages | Assignee: | Thierry Vignaud <thierry.vignaud> |
| Status: | RESOLVED FIXED | QA Contact: | |
| Severity: | normal | ||
| Priority: | Normal | CC: | marja11, pterjan |
| Version: | Cauldron | Keywords: | Junior_job, PATCH |
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| URL: | http://www.ody.ca/~dwhodgins/Luks-Howto.html#Changelog | ||
| Whiteboard: | |||
| Source RPM: | drakxtools-13.58-1.mga1.src.rpm | CVE: | |
| Status comment: | |||
| Attachments: | Patch to specify cipher for the luksFormat command | ||
|
Description
Dave Hodgins
2011-10-18 05:55:53 CEST
Created attachment 975 [details]
Patch to specify cipher for the luksFormat command
Manuel Hiebel
2011-10-25 12:32:19 CEST
CC:
(none) =>
pterjan Was the patch tested? Keywords:
(none) =>
Junior_job, PATCH I've tested it on my system. Pinging, because nothing has happened with this report for more than 3 months, it still has the status NEW or REOPENED. CC:
(none) =>
marja11 Doesn't that changelog says that the default was changed in the program directly? The changelog is for the web page, showing that the cipher was changed in the scripts, shown on that web page. The cryptsetup program still defaults to cbc mode. The patch in comment 1 is for diskdrake, so it will override the default used by cryptsetup. It would probably be better to change the default in cryptsetup, but I don't have a patch for that. Commited into SVN Status:
NEW =>
RESOLVED |