Hard Drive Security
Moderator: Forum Moderators
-
- Heavy
- Posts: 5433
- Joined: October 10th, 2004, 17:36
- Location: Bristol, UK
- Contact:
Hard Drive Security
I am currently investigating hard drive/data security products for mobile laptops.
There is sensitive data stored on the laptops, which has the potential to be used by terrorists if stolen, so it needs to be something pretty heavy weight when it comes to security.
Basically the hardware is a Ruggedised Panasonic CF19, and I was wondering if any of you have used hard drive protection tools in the past, and what your experiences were with them.
Users will be made to authenticate against the Active Directory over a mobile data link in their vehicles, however anyone can crack a local admins password nowadays, so I need something that will "only" let the user or administrator such as myself gain access to the data/software on the disk.
There is sensitive data stored on the laptops, which has the potential to be used by terrorists if stolen, so it needs to be something pretty heavy weight when it comes to security.
Basically the hardware is a Ruggedised Panasonic CF19, and I was wondering if any of you have used hard drive protection tools in the past, and what your experiences were with them.
Users will be made to authenticate against the Active Directory over a mobile data link in their vehicles, however anyone can crack a local admins password nowadays, so I need something that will "only" let the user or administrator such as myself gain access to the data/software on the disk.
-
- Morbo
- Posts: 19676
- Joined: December 10th, 2004, 21:53
- Contact:
-
- Shambler In Drag
- Posts: 780
- Joined: March 16th, 2007, 20:22
- Location: on the sofa
- Contact:
Bitlocker on Fista - http://www.runpcrun.com/node/309
Truecrypt - Free Open-Source Disk Encryption Software - uses well-known encryption algorithms and because it's open-source you know there's no back-doors.
Truecrypt - Free Open-Source Disk Encryption Software - uses well-known encryption algorithms and because it's open-source you know there's no back-doors.
Last edited by cheeseandham on October 1st, 2007, 15:54, edited 1 time in total.
-
- Heavy
- Posts: 5433
- Joined: October 10th, 2004, 17:36
- Location: Bristol, UK
- Contact:
The problem is that they need the data locally in order to do mobile working, which is something they cannot do currently.
You're right though, if a terrorist were to get their hands on one, it doesn't matter what we load, they will be able to crack it regardless.
The data is just far too large to be streamed across a mobile network such as 3G, so it "has" to reside on the laptop to be run locally out in the field without any consistent communications.
I know the HP laptops we get in stock nowadays have finger print readers and bios protection tools preloaded, but these are ruggedised laptops that obviously wouldn't suit finger print readers built into the laptop, as they would easily break.
You're right though, if a terrorist were to get their hands on one, it doesn't matter what we load, they will be able to crack it regardless.
The data is just far too large to be streamed across a mobile network such as 3G, so it "has" to reside on the laptop to be run locally out in the field without any consistent communications.
I know the HP laptops we get in stock nowadays have finger print readers and bios protection tools preloaded, but these are ruggedised laptops that obviously wouldn't suit finger print readers built into the laptop, as they would easily break.
-
- Heavy
- Posts: 5433
- Joined: October 10th, 2004, 17:36
- Location: Bristol, UK
- Contact:
Thanks, I'll have a look at Truecrypt, the laptop will be running XP Pro/XP Tablet(had a feeling you'd know of something )cheeseandham wrote:Bitlocker on Fista - http://www.runpcrun.com/node/309
Truecrypt - Free Open-Source Disk Encryption Software - uses well-known [http://www.truecrypt.org/docs/?s=encryption-algorithms]encryption algorithms[/url] and because it's open-source you know there's no back-doors.
I've heard good things about TrueCrypt for encryption.
http://en.wikipedia.org/wiki/TrueCrypt
edit: bah, too slow trying and ultimately giving up wording something.
http://en.wikipedia.org/wiki/TrueCrypt
edit: bah, too slow trying and ultimately giving up wording something.
-
- Site Owner
- Posts: 9597
- Joined: May 16th, 2005, 15:31
- Location: Coventry, UK
- Contact:
-
- Shambler In Drag
- Posts: 780
- Joined: March 16th, 2007, 20:22
- Location: on the sofa
- Contact:
Truecrypt is the nuts, it's very very strong (especially when using a sentence as a passphrase such as a line from a song), it creates a local disk when mounted (so it's very simple to use and other software just sees it as a normal disk)
It even has "Plausible Deniability" - it may happen that you are forced by somebody to reveal the password to an encrypted volume (e.g. gun to the head). You create a hidden volume inside the real one, and so depending on which password you use to decrypt reveals the two different types of information in there (granny's recipes instead of your plans for your secret underground lair)
It even has "Plausible Deniability" - it may happen that you are forced by somebody to reveal the password to an encrypted volume (e.g. gun to the head). You create a hidden volume inside the real one, and so depending on which password you use to decrypt reveals the two different types of information in there (granny's recipes instead of your plans for your secret underground lair)
Damn should have just linked Wikipedia instead of typing all that myselfStoat wrote:I've heard good things about TrueCrypt for encryption.
http://en.wikipedia.org/wiki/TrueCrypt
-
- Morbo
- Posts: 19676
- Joined: December 10th, 2004, 21:53
- Contact:
-
- Robotic Bumlord
- Posts: 8475
- Joined: October 24th, 2004, 0:27
- Location: Manchester, UK
-
- Morbo
- Posts: 19676
- Joined: December 10th, 2004, 21:53
- Contact:
-
- Throbbing Cupcake
- Posts: 10249
- Joined: February 17th, 2007, 23:05
- Location: The maleboge
your right there deej, they are generally mounted in doorframes and the like. Using bio-electrical current to detect the amount of actual life in the digit, I'm sure they'll find a way of making portable ones, but until then, if you do find a need to circumvent a finger scanner that uses techniques to detect pulse and lividity, make sure its fresh, and use a battery and some wires to simulate pulses of current. Although you may have a problem with the armed guards, attack dogs and other security measures that generally reside around those types of door.
-
- Cheese Lord
- Posts: 804
- Joined: June 13th, 2006, 22:09
- Contact:
/tangentHereComesPete wrote:your right there deej, they are generally mounted in doorframes and the like. Using bio-electrical current to detect the amount of actual life in the digit, I'm sure they'll find a way of making portable ones, but until then, if you do find a need to circumvent a finger scanner that uses techniques to detect pulse and lividity, make sure its fresh, and use a battery and some wires to simulate pulses of current. Although you may have a problem with the armed guards, attack dogs and other security measures that generally reside around those types of door.
-
- Throbbing Cupcake
- Posts: 10249
- Joined: February 17th, 2007, 23:05
- Location: The maleboge
Oh I'm sorry that my post on fingerprint scanner's offends you KV. You did however take the time to read and respond. And you brought what to this thread? Lets see, I'll answer that myself- a quotation of my post, a line, a word and a 'mote? Well done you, you've now descended to close to youtube levels of commenting.
-
- Throbbing Cupcake
- Posts: 10249
- Joined: February 17th, 2007, 23:05
- Location: The maleboge
-
- Site Owner
- Posts: 9597
- Joined: May 16th, 2005, 15:31
- Location: Coventry, UK
- Contact: