Enhancing Storage Encryption with Wide-Block Ciphers & HCTR2 πŸ”

Discover why narrow-block ciphers like AES-XTS fall short for storage encryption and how wide-block ciphers with HCTR2 offer a more secure and efficient solution. Learn from Google's insights!

Enhancing Storage Encryption with Wide-Block Ciphers & HCTR2 πŸ”
The Linux Foundation
394 views β€’ Aug 8, 2022
Enhancing Storage Encryption with Wide-Block Ciphers & HCTR2 πŸ”

About this video

For storage encryption, narrow-block ciphers such as AES-XTS are not ideal. They are used anyway because more theoretically sound constructions traditionally had problems that prevented their widespread use. However, if designed and implemented well, wide-block ciphers are better suited for the use case; not only are they more secure; they are also harder to accidentally misuse and are cryptographically cleaner. HCTR2 is a new wide-block encryption mode that is being added to the Linux Crypto API. It is the first such mode supported by Linux that takes advantage of existing cryptography instructions such as AES-NI, and it will allow for more secure storage encryption with minimal performance loss. This talk will cover background on wide-block cipher modes, limitations of narrow-block modes, wide-block cipher support in Linux, the design of HCTR2, and applying HCTR2 to filenames encryption in the ext4 and f2fs filesystems.

Video Information

Views

394

Likes

7

Duration

25:42

Published

Aug 8, 2022

Related Trending Topics

LIVE TRENDS

Related trending topics. Click any trend to explore more videos.