[51167] in cryptography@c2.net mail archive
Re: TPM & disk crypto
daemon@ATHENA.MIT.EDU (Martin Hermanowski)
Mon Oct 9 13:59:49 2006
X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Mon, 09 Oct 2006 19:03:03 +0200
From: Martin Hermanowski <lists@martin.hermanowski.name>
To: cryptography@metzdowd.com
In-Reply-To: <TheMailAgent.16cd67c996d58a@9cf79261c061c15a17142>
This is an OpenPGP/MIME signed message (RFC 2440 and 3156)
--------------enig1B074F320EB4E61991073C91
Content-Type: multipart/alternative;
boundary="------------090505030200020109090402"
This is a multi-part message in MIME format.
--------------090505030200020109090402
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable
Alexander Klimov schrieb:
> On Fri, 6 Oct 2006, Erik Tews wrote:
> =20
>>> And the TPM knows that your BIOS has not lied about the checksum of g=
rub
>>> how?
>>> =20
>> The TPM does not know that the BIOS did not lie about the checksum of
>> grub or any other bios component.
>>
>> What you do is, you trust your TPM and your BIOS that they never lie t=
o
>> you, because they are certified by the manufature of the system and th=
e
>> tpm. (This is why it is called trusted computing)
>> =20
>
> IIUC, TPM is pointless for disk crypto: if your laptop is stolen the
> attacker can reflash BIOS and bypass TPM. Moreover, TPM is actually
> bad for disk crypto: without it you lose your data only if your HDD
> dies, now you lose your data if your HDD dies *or* if you motherboard
> dies. If the user is not experienced in BIOS reflashing, they also
> lose their data if OS crashes and refuses to boot (not uncommon for
> some common OSes).
>
> =20
There is a great risk of data loss if the TPM protection is badly
implemented. You can, however, store an encrypted key in your (not
encrypted) hard disk, and save the decryption key both inside the TPM
(bound to valid bios/boot loader/Kernel/OS PCR values) *and* in a second
place for emergency recovery (like a memory stick in a safe).
This way, the data on the hard disk can only be decrypted, if the
unaltered operating system is used - the TPM will not decrypt the bound
data if the system state changed. Of course, after reflashing your bios,
you need to use your second key credential (once).
--=20
Martin Hermanowski
http://martin.hermanowski.name
https://www.openbc.com/hp/Martin_Hermanowski/
--------------090505030200020109090402
Content-Type: text/html; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable
<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
<head>
<meta content=3D"text/html;charset=3DISO-8859-1" http-equiv=3D"Content-=
Type">
<title></title>
</head>
<body bgcolor=3D"#ffffff" text=3D"#000000">
Alexander Klimov schrieb:
<blockquote cite=3D"midTheMailAgent.16cd67c996d58a@9cf79261c061c15a17142"=
type=3D"cite">
<pre wrap=3D"">On Fri, 6 Oct 2006, Erik Tews wrote:
</pre>
<blockquote type=3D"cite">
<blockquote type=3D"cite">
<pre wrap=3D"">And the TPM knows that your BIOS has not lied about =
the checksum of grub
how?
</pre>
</blockquote>
<pre wrap=3D"">The TPM does not know that the BIOS did not lie about =
the checksum of
grub or any other bios component.
What you do is, you trust your TPM and your BIOS that they never lie to
you, because they are certified by the manufature of the system and the
tpm. (This is why it is called trusted computing)
</pre>
</blockquote>
<pre wrap=3D""><!---->
IIUC, TPM is pointless for disk crypto: if your laptop is stolen the
attacker can reflash BIOS and bypass TPM. Moreover, TPM is actually
bad for disk crypto: without it you lose your data only if your HDD
dies, now you lose your data if your HDD dies *or* if you motherboard
dies. If the user is not experienced in BIOS reflashing, they also
lose their data if OS crashes and refuses to boot (not uncommon for
some common OSes).
</pre>
</blockquote>
There is a great risk of data loss if the TPM protection is badly
implemented. You can, however, store an encrypted key in your (not
encrypted) hard disk, and save the decryption key both inside the TPM
(bound to valid bios/boot loader/Kernel/OS PCR values) *and* in a
second place for emergency recovery (like a memory stick in a safe).<br>
<br>
This way, the data on the hard disk can only be decrypted, if the
unaltered operating system is used - the TPM will not decrypt the
bound data if the system state changed. Of course, after reflashing
your bios, you need to use your second key credential (once).<br>
<br>
<pre class=3D"moz-signature" cols=3D"72">--=20
Martin Hermanowski
<a class=3D"moz-txt-link-freetext" href=3D"http://martin.hermanowski.name=
">http://martin.hermanowski.name</a>
<a class=3D"moz-txt-link-freetext" href=3D"https://www.openbc.com/hp/Mart=
in_Hermanowski/">https://www.openbc.com/hp/Martin_Hermanowski/</a>
</pre>
</body>
</html>
--------------090505030200020109090402--
--------------enig1B074F320EB4E61991073C91
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
iD8DBQFFKoDLmGb6Npij0ewRAopTAJ4kK3fWZCTXFhDVhPyL1XLNxqQtSACgq0uK
WwHmCV+B6CndZvDyKWXeVRA=
=LYTw
-----END PGP SIGNATURE-----
--------------enig1B074F320EB4E61991073C91--
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com