Please enable JavaScript.
Coggle requires JavaScript to display documents.
Device security - Coggle Diagram
Device security
encryption
linux unified key setup (LUKS)
crypt info in unencrypted header
passwort oder key zum entschlüsseln
benötigt device mapper
data and system partition encryption possible
also usable with TPM
uses encryption ARGON-2
bitlocker
AES variation für encryption
decryption via
passwords
TPM
PIN
combinations
(recovery key)
AD integration possible
does not work for system drives
modes
entire disk
only used data
write random data before enrcyption if drive is emtpy
boot
secure boot
verhindert boot kits
mallicous code in bootloader
bootloader wird signiert
in windows von microsoft
in linux DYI
es wird nur hochgefahren wenn die signatur passt
trusted boot
verhinder root kits
mallicous code in driver
mallicous code in kernel
hilft nicht bei 3rd party driver
UEFI (IN SECURE BOOT)
bootloader
kernel
system drivers
system files
ELAM
3rd party driver (NOT IN TRUSTED BOOT)