[OT] Trusted Computing and GnuPG

From: Steven Anderson (hikenboot_at_yahoo.com)
Date: 03/17/05

  • Next message: Sridhar M.A.: "Re: Acrobat 7.0 for linux is out"
    Date: Thu, 17 Mar 2005 08:38:59 -0800 (PST)
    To: debian-user@lists.debian.org
    
    

    This is a slight off the subject note.

    But I spent almost a year trying to get a clusterized
    virtual machine project off the ground that would also
    involve hardware that would "virtualize" the I/O's of
    the PC platform. Part of this project would have
    involved using hardware based encryption. In fact we
    wanted to encrypt in both the hardware (on the hard
    drive) as well as in memory where everything would
    remain encrypted until the data needed to be accessed
    by the virtual machine associated with the encrypted
    data.

    It became apparent that "cache thrashing" would
    consume all the badwidth of the cluster reducing it to
    just an expesive PC since none of the modern operating
    systems such a Windows and the applications there in
    are created to be threaded for a cluster. No general
    case solution to the cache thrashing problem exists.
    Xenoserver and Xen and a couple of other projects try
    and get around the problem by letting a virtual
    machine be moved from one node in the cluster to the
    least used node in the cluster similar to the
    Vmware-VMotion approach, but again none of them get
    around this problem and utilize the aggrigated
    bandwidth. We also explored the possiblilty of using
    predictive technology to get around the problem.

    We also found that encryption and decryption is best
    handled in hardware since it can be designed to be
    1000 times faster.

    Other aspects include the use of optical fiber
    connections or infiniband to increase internode
    performance. Unfortunately even this type of
    interconnects would suffer the same performance
    problems due each node waiting for another to access
    data.

    The encryption part again is possible and would work
    well but better done in hardware.I would be surprised
    if governments didnt already use it.

     

                    
    __________________________________
    Do you Yahoo!?
    Yahoo! Mail - now with 250MB free storage. Learn more.
    http://info.mail.yahoo.com/mail_250

    -- 
    To UNSUBSCRIBE, email to debian-user-REQUEST@lists.debian.org 
    with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
    

  • Next message: Sridhar M.A.: "Re: Acrobat 7.0 for linux is out"

    Relevant Pages

    • Re: EFS Private Keys
      ... It's possible to have a cluster that was in use that couldn't be wiped. ... > syskey was to EFS in W2K, ... >>> the private keys are protected however the key to the private key is ... >>> stronger encryption available for EFSfiles permanently if you don't. ...
      (microsoft.public.win2000.security)
    • Re: Hyper-V cluster
      ... Right, as this states, if there is more than one virtual machine in a group, you may receive the following error message when you try to manage those virtual machines from System Center Virtual Machine Manager 2008: Unsupported Cluster configuration. ... At present we sometimes find our self with ONE server doing ... I am new to hyper-v and windows 2008 clustering, ...
      (microsoft.public.windows.server.clustering)
    • Re: disk encryption performance hit
      ... I created a new VMware machine and installed F9 -- but without disk encryption -- and repeated the test. ... it would seem that the disk encryption is NOT to blame for the sluggish behavior. ... There's something else going on, maybe because it's a virtual machine, or maybe with the SCSI drivers in the latest kernel. ... It could be because current VMware Tools does not install cleanly on 2.6.24 and newer kernels. ...
      (Fedora)
    • RE: Windows 2000 cluster to Windows 2003 cluster migration
      ... Do you need to use a SCSI disk for the system in the virtual machine? ... Do you want to form a server cluster by using virtual machines? ... Windows 2000 cluster to Windows 2003 cluster migration ...
      (microsoft.public.windows.server.migration)
    • Re: Wiping Out Data
      ... know the easiest way to wipe out all data on an HD. ... You use the virtual machine for everything sensitive. ... level of protection you could implement encryption and wiping within the ... living inside an ubuntu guest machine. ...
      (Ubuntu)