Slashdot Mirror


Why Not Use Full Disk Encryption on Laptops?

Saqib Ali asks: "According to the 2006 Security Breaches Matrix, a large number of the data leaks were caused due to stolen/missing laptops. Mobile devices will be stolen or lost, but one way to easily mitigate the harm is to use Full Disk Encryption (FDE) on all mobile devices. So, why don't we encrypt all our HDDs?" "Cost, and performance impact are the usual arguments.

Analysis shows that the access time increases by 56%-85% after FDE. As HDDs fills up the fragmentation increases and so will the file access time. With FDE, the swap file (system's virtual memory) gets encrypted as well. This will impact the system's performance noticeably when the virtual memory is being used more often.

Encryption key & password management blues follow. What happens when the user forgets his/her new FDE password? How to manage the encryption key backup files? Who has possession of the backups of the encryption keys? What about when the users quits and does not hand over the password / encryption keys? Who can access the system and its encrypted files? How frequently does the password need to be changed? How to prevent the user from writing the passwords down? Using hardware token (RSA Token, smartcard etc) can alleviate many of the password management issues. But these hardware tokens are costly!

Cost for Full Disk Encryption solutions ranges from $0-$300.

Is it not worth using Full Disk Encryption on mobile devices after all the data leaks we have seen in the last few years?"

2 of 446 comments (clear)

  1. Re:OSX Makes it Easy by Henry+V+.009 · · Score: 0, Troll

    XP Pro has let you do the same since it was released. Right-click My Documents and tell it to encrypt the folder. Better than being stuck with Steve Job's zealot-ware.

  2. Security mantra by j.leidner · · Score: 0, Troll

    Here is another solution to the question about whether to encypt laptop HDDs: take a deep
    breath and chant:

    "Security is an illusion."
    "Security is an illusion."
    "Security is an illusion."
    (repeat at least 7 more times)

    After that you should be enlightened.