7 ms·
Shouldn't this also be a really fast implementation since there isn't even the delay required to move items into/out of ram? Also what happens if the scheduler
by jdjb 13y ago
Shouldn't this also be a really fast implementation since there isn't even the delay required to move items into/out of ram?
Also what happens if the scheduler moves the application out of running state?
- DennisP 13y agoHm. Maybe Linux should fold this into the kernel.
- barrkel 13y agoDebug registers are only accessible in Ring 0. I haven't looked at the implementation described, but I'd be surprised if it isn't a kernel module or something equivalent.
- dmm 13y agoEven if all of the AES state is kept in cache, the data to be encrypted would still have to be copied from ram or disk, right?
- mindstab 13y agoyeah but you can have an encrypted disk, encrypted ram, not so much.
- jacquesm 13y agoOpenBSD will get you halfway there, it at least encrypts (if you switch it on) the virtual memory.
- m_eiman 13y agoAs does OSX. Probably Windows too? There has to be a registry setting to tweak, somewhere.
- dobbsbob 13y agoOpenBSD does this by default. It also now directly boots cryptodisks eliminating the need to create a /boot partition and carry it around if you're concerned about evil maid attacks, though I would imagine a camera or keyboard hardware keyloggers would defeat that pretty easily
- tedunangst 13y agoThe boot loader is still on the disk, unencrypted.
- Nanzikambe 13y agoThat's what removable media is for
- dobbsbob 13y agoderp, /root correction
- barrkel 13y agoDebug register access is not necessarily as optimized as access to (e.g.) L1 cache.
- Tomdarkness 13y agoThere is no application, it is a kernel patch.