%0 Conference Proceedings %T Practical Cryptographic Data Integrity Protection with Full Disk Encryption %+ Faculty of Informatics [Brno] (FI / MUNI) %+ Red Hat Czech [Czech Republic] %A Brož, Milan %A Patočka, Mikuláš %A Matyáš, Vashek %Z Part 2: Failures of Security Management %< avec comité de lecture %( IFIP Advances in Information and Communication Technology %B 33th IFIP International Conference on ICT Systems Security and Privacy Protection (SEC) %C Poznan, Poland %Y Lech Jan Janczewski %Y Mirosław Kutyłowski %I Springer International Publishing %3 ICT Systems Security and Privacy Protection %V AICT-529 %P 79-93 %8 2018-09-18 %D 2018 %R 10.1007/978-3-319-99828-2_6 %Z Computer Science [cs]Conference papers %X Full Disk Encryption (FDE) has become a widely used security feature. Although FDE can provide confidentiality, it generally does not provide cryptographic data integrity protection. We introduce an algorithm-agnostic solution that provides both data integrity and confidentiality protection at the disk sector layer. Our open-source solution is intended for drives without any special hardware extensions and is based on per-sector metadata fields implemented in software. Our implementation has been included in the Linux kernel since the version 4.12. %G English %Z TC 11 %2 https://inria.hal.science/hal-02023745/document %2 https://inria.hal.science/hal-02023745/file/472722_1_En_6_Chapter.pdf %L hal-02023745 %U https://inria.hal.science/hal-02023745 %~ IFIP %~ IFIP-AICT %~ IFIP-TC %~ IFIP-TC11 %~ IFIP-SEC %~ IFIP-AICT-529