Am Sonntag, 22. November 2009 17:38:02 schrieb [email protected]: > It doesn't really make sense because you're not protecting against a > "casual" attacker at this point anyway. All FDE protects against is > powered-down physical compromise (typically theft or loss). The moment > your threat model includes a malicious attacker returning ownership to > you, you've gone way beyond the "by-chance-hacker" assessment and deeply > into espionage territory. At that point, if the attacker has had > manipulative access to your boot media, nothing short of hardware-level > measurements is really going to "guarantee" the safety of your data. I > also refer you to http://xkcd.com/538/.
Hehe, this comic is very true. Even though I didn't try to hide from government or highly criminal guys, I guess you are right that the "by-chance- hackers" won't be able to do anything which will get prevented by this way of doing it. > There's nothing stopping you from this pursuit, it simply isn't going to > protect against what you may think it does. It adds unnecessary > complexity for that purpose, and complexity just adds more opportunities > for failure and subversion. If you find it convenient, that's just up > to you. Well, I guess I'll let it be for the time beeing. Thank you for the discussion!
