InvestorsHub Logo
Followers 40
Posts 429
Boards Moderated 0
Alias Born 07/31/2003

Re: Vacationhouse post# 146574

Tuesday, 06/19/2007 1:46:37 PM

Tuesday, June 19, 2007 1:46:37 PM

Post# of 249238
Vacationhouse's eetimes Article/Role of TPMs

In this article, you will find the following interesting nugget:

"Instead of a TPM, the storage spec relies on an existing storage controller to generate and manage keys that are securely saved on extra space traditionally available on the storage device. Disk drive makers, for example, typically have access to a secure area of a couple hundred megabytes for storing systems management programs on a typical disk drive."

This sounds like storing the encryption keys using a storage controller will be the principal mode for the FDE drives, rather than just an alternative that can be used when a TPM is not available.

First, does anyone know if the TCG specification expresses a preference for using a TPM when storing encryption keys? My knowledge in this area is limited, but it seems likely to me that it would be easier to recover the keys in the scenario described in the article than with any strategy that requires a TPM.

Second, doesn't storing the encryption keys on the hard drive mean that you either have to back up the data on the hard drive onto a central server in a non-encrypted form, or that you have to back up the keys too in the event of hard drive failure? This would be an important scenario over time, significantly more likely to occur than theft of the PC.

Third, is the non-TPM scenario the one where Secude offers an alternative? I remember they were working with Seagate too.

Join the InvestorsHub Community

Register for free to join our community of investors and share your ideas. You will also get access to streaming quotes, interactive charts, trades, portfolio, live options flow and more tools.