[SOLVED] LUKS Hash SHA512 by default

Started by gorias, October 12, 2014, 09:41:52 PM

Previous topic - Next topic

gorias

Hi All

I been using BB4 for around 3 hours now and i am very impressed, all is good, seams stable and working very well. There is one feature through that really really bugs me, and being the sensitivity of the data that BB could be handling. Why is the default install of BB with LUKS hash not sha512, yes i know you can do it manually, and I have but really it should be a default feature, as we all know http://hideandhack.blogspot.co.uk/2013/05/do-not-use-sha-1-luks-disk-encryption.html SHA1 is broken.

b4d_bl0ck

Hi gorias,
thanks for the feedback... we are glad people like the new release.
About your question, i guess you are referring to the encrypted container created during installation, aren't you?
If this is the case, note that this is the Ubuntu 14.04 installer, so it uses the same settings... You should report upstream to Ubuntu devs instead, and check if they have a good reason to do so... Maybe having some time we can check if it can be tweaked easily, meanwhile you can start asking to Ubuntu support and see what they suggest.

Enjoy BackBox.
Have fun.
bool secure = check_paranoia() ? true : false;