特殊:Badtitle/NS100:EncryptedFilesystems
文章出处: |
{{#if: | {{{2}}} | https://help.ubuntu.com/community/EncryptedFilesystems }} |
点击翻译: |
English {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/af | • {{#if: UbuntuHelp:EncryptedFilesystems|Afrikaans| [[::EncryptedFilesystems/af|Afrikaans]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/ar | • {{#if: UbuntuHelp:EncryptedFilesystems|العربية| [[::EncryptedFilesystems/ar|العربية]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/az | • {{#if: UbuntuHelp:EncryptedFilesystems|azərbaycanca| [[::EncryptedFilesystems/az|azərbaycanca]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/bcc | • {{#if: UbuntuHelp:EncryptedFilesystems|جهلسری بلوچی| [[::EncryptedFilesystems/bcc|جهلسری بلوچی]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/bg | • {{#if: UbuntuHelp:EncryptedFilesystems|български| [[::EncryptedFilesystems/bg|български]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/br | • {{#if: UbuntuHelp:EncryptedFilesystems|brezhoneg| [[::EncryptedFilesystems/br|brezhoneg]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/ca | • {{#if: UbuntuHelp:EncryptedFilesystems|català| [[::EncryptedFilesystems/ca|català]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/cs | • {{#if: UbuntuHelp:EncryptedFilesystems|čeština| [[::EncryptedFilesystems/cs|čeština]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/de | • {{#if: UbuntuHelp:EncryptedFilesystems|Deutsch| [[::EncryptedFilesystems/de|Deutsch]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/el | • {{#if: UbuntuHelp:EncryptedFilesystems|Ελληνικά| [[::EncryptedFilesystems/el|Ελληνικά]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/es | • {{#if: UbuntuHelp:EncryptedFilesystems|español| [[::EncryptedFilesystems/es|español]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/fa | • {{#if: UbuntuHelp:EncryptedFilesystems|فارسی| [[::EncryptedFilesystems/fa|فارسی]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/fi | • {{#if: UbuntuHelp:EncryptedFilesystems|suomi| [[::EncryptedFilesystems/fi|suomi]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/fr | • {{#if: UbuntuHelp:EncryptedFilesystems|français| [[::EncryptedFilesystems/fr|français]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/gu | • {{#if: UbuntuHelp:EncryptedFilesystems|ગુજરાતી| [[::EncryptedFilesystems/gu|ગુજરાતી]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/he | • {{#if: UbuntuHelp:EncryptedFilesystems|עברית| [[::EncryptedFilesystems/he|עברית]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/hu | • {{#if: UbuntuHelp:EncryptedFilesystems|magyar| [[::EncryptedFilesystems/hu|magyar]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/id | • {{#if: UbuntuHelp:EncryptedFilesystems|Bahasa Indonesia| [[::EncryptedFilesystems/id|Bahasa Indonesia]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/it | • {{#if: UbuntuHelp:EncryptedFilesystems|italiano| [[::EncryptedFilesystems/it|italiano]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/ja | • {{#if: UbuntuHelp:EncryptedFilesystems|日本語| [[::EncryptedFilesystems/ja|日本語]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/ko | • {{#if: UbuntuHelp:EncryptedFilesystems|한국어| [[::EncryptedFilesystems/ko|한국어]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/ksh | • {{#if: UbuntuHelp:EncryptedFilesystems|Ripoarisch| [[::EncryptedFilesystems/ksh|Ripoarisch]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/mr | • {{#if: UbuntuHelp:EncryptedFilesystems|मराठी| [[::EncryptedFilesystems/mr|मराठी]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/ms | • {{#if: UbuntuHelp:EncryptedFilesystems|Bahasa Melayu| [[::EncryptedFilesystems/ms|Bahasa Melayu]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/nl | • {{#if: UbuntuHelp:EncryptedFilesystems|Nederlands| [[::EncryptedFilesystems/nl|Nederlands]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/no | • {{#if: UbuntuHelp:EncryptedFilesystems|norsk| [[::EncryptedFilesystems/no|norsk]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/oc | • {{#if: UbuntuHelp:EncryptedFilesystems|occitan| [[::EncryptedFilesystems/oc|occitan]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/pl | • {{#if: UbuntuHelp:EncryptedFilesystems|polski| [[::EncryptedFilesystems/pl|polski]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/pt | • {{#if: UbuntuHelp:EncryptedFilesystems|português| [[::EncryptedFilesystems/pt|português]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/ro | • {{#if: UbuntuHelp:EncryptedFilesystems|română| [[::EncryptedFilesystems/ro|română]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/ru | • {{#if: UbuntuHelp:EncryptedFilesystems|русский| [[::EncryptedFilesystems/ru|русский]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/si | • {{#if: UbuntuHelp:EncryptedFilesystems|සිංහල| [[::EncryptedFilesystems/si|සිංහල]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/sq | • {{#if: UbuntuHelp:EncryptedFilesystems|shqip| [[::EncryptedFilesystems/sq|shqip]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/sr | • {{#if: UbuntuHelp:EncryptedFilesystems|српски / srpski| [[::EncryptedFilesystems/sr|српски / srpski]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/sv | • {{#if: UbuntuHelp:EncryptedFilesystems|svenska| [[::EncryptedFilesystems/sv|svenska]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/th | • {{#if: UbuntuHelp:EncryptedFilesystems|ไทย| [[::EncryptedFilesystems/th|ไทย]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/tr | • {{#if: UbuntuHelp:EncryptedFilesystems|Türkçe| [[::EncryptedFilesystems/tr|Türkçe]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/vi | • {{#if: UbuntuHelp:EncryptedFilesystems|Tiếng Việt| [[::EncryptedFilesystems/vi|Tiếng Việt]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/yue | • {{#if: UbuntuHelp:EncryptedFilesystems|粵語| [[::EncryptedFilesystems/yue|粵語]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/zh | • {{#if: UbuntuHelp:EncryptedFilesystems|中文| [[::EncryptedFilesystems/zh|中文]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/zh-hans | • {{#if: UbuntuHelp:EncryptedFilesystems|中文(简体)| [[::EncryptedFilesystems/zh-hans|中文(简体)]]}}|}} {{#ifexist: {{#if: UbuntuHelp:EncryptedFilesystems | UbuntuHelp:EncryptedFilesystems | {{#if: | :}}EncryptedFilesystems}}/zh-hant | • {{#if: UbuntuHelp:EncryptedFilesystems|中文(繁體)| [[::EncryptedFilesystems/zh-hant|中文(繁體)]]}}|}} |
{{#ifeq:UbuntuHelp:EncryptedFilesystems|:EncryptedFilesystems|请不要直接编辑翻译本页,本页将定期与来源同步。}} |
{{#ifexist: :EncryptedFilesystems/zh | | {{#ifexist: EncryptedFilesystems/zh | | {{#ifeq: {{#titleparts:EncryptedFilesystems|1|-1|}} | zh | | }} }} }} {{#ifeq: {{#titleparts:EncryptedFilesystems|1|-1|}} | zh | | }}
I will draft a spec once there's been some comments. Feel free to make edits and suchlike. Don't know if this note is necessary.
Summary
Like the Debian text-mode installer, allow, in textual and graphical Ubuntu installers, the functionality for encryping entire disks or filesystems, with dm-crypt. This includes encrypted root, home, and swap partitions.
Rationale
Ubuntu needs to retain an image of robust security amongst GNU/Linux distributions. With Vista's new bitlocker Drive Encryption feature, we ought to remain one step ahead of the competition and have the functionality for encrypting filesystems or the entire disk, without having to rely upon a TPM chip. Using a smart card or USB flash drive to store the key is a possible extra plus to be assessed later. This is also highly supported by the Ubuntuforums community. My thread here: http://www.ubuntuforums.org/showthread.php?t=215389
Use Cases
Paul V. is a privacy advocate. Though he has nothing to hide, it's still his nothing, and he has a right to hide it. Ed S. is a hardware engineer for a company that lends all its employees laptops. Management is concerned about the theft of a laptop as an act of economic espionage. To protect their design, proprietary at this point, Joe suggests installing Ubuntu Feisty with encrypted filesystems. Mark J. is a civil libertarian in a country with a government hostile to people of his beliefs, of humanity, equality, and inherent irrevocable freedoms. He could be put to death for some of the things on his laptop, and chooses to AESify the whole thing. John Y., though most people won't get the reference, is an exceptionally paranoid fellow who believes that there is a conspiracy against him, and that thousands of people are trying to kill him. How better to set his mind at rest than encrypting his hard disk?
Scope
Possibly, only changes to Ubiquity and debian-installer, and possibly the inclusion of cryptsetup on disk, which is ~700KBs
Lingering Questions
- should Smartcard/flash drive key storage be supported?
- Should TPM chips, with their "black box" design, be supported?