Hobaneng re hloka li-flash drive tse nang le encryption ea Hardware?

Lumela, Habr! Litlhalosong tsa e mong oa rona lisebelisoa tse mabapi le li-flash drive babali ba ile ba botsa potso e khahlisang: "Hobaneng o hloka flash drive e nang le encryption ea Hardware ha TrueCrypt e fumaneha?" - mme a bile a hlahisa matšoenyeho a mang ka "U ka etsa bonnete ba hore ha ho na li-bookmark ho software le hardware ea Kingston drive ?” Re arabile lipotso tsena ka bokhutšoanyane, empa ra etsa qeto ea hore sehlooho sena se lokeloa ke tlhahlobo ea motheo. Sena ke seo re tla se etsa posong ena.

Hobaneng re hloka li-flash drive tse nang le encryption ea Hardware?

AES hardware encryption, joalo ka software encryption, esale e le teng ka nako e telele, empa hantle-ntle e sireletsa data ea bohlokoa ho li-flash drive? Ke mang ea fanang ka setifikeiti sa likoloi tse joalo, 'me na litifikeiti tsee li ka tšeptjoa? Ke mang ea hlokang li-flash drive tse "rarahaneng" tse joalo haeba u ka sebelisa mananeo a mahala joalo ka TrueCrypt kapa BitLocker. Joalokaha u ka bona, sehlooho se botsoang litlhalosong se hlile se hlahisa lipotso tse ngata. Ha re leke ho e fumana kaofela.

Kokoetliso ea Hardware e fapana joang le encryption ea software?

Tabeng ea li-flash drives (hammoho le li-HDD le li-SSD), chip e khethehileng e fumanehang botong ea potoloho ea sesebelisoa e sebelisoa ho kenya ts'ebetsong encryption ea data ea hardware. E na le jenereithara ea linomoro e hahelletsoeng ka har'a eona e hlahisang linotlolo tsa encryption. Lintlha li patiloe ka mokhoa o ikhethileng 'me hang hang ha u kenya phasewete ea hau ea mosebelisi. Boemong bona, ho batla ho le thata ho fumana data ntle le password.

Ha u sebelisa encryption ea software, "ho notlela" data ho drive ho fanoa ke software ea kantle, e sebetsang e le mokhoa o theko e tlase ho feta mekhoa ea encryption ea hardware. Mefokolo ea software e joalo e ka kenyelletsa tlhokahalo ea banal bakeng sa liapdeite tsa kamehla e le ho fana ka khanyetso ea mekhoa e ntseng e ntlafala ea ho hacking. Ho phaella moo, matla a ts'ebetso ea k'homphieutha (ho e-na le chip ea hardware e arohaneng) a sebelisetsoa ho hlakola data, 'me, ha e le hantle, boemo ba ts'ireletso ea PC bo lekanya boemo ba tšireletso ea koloi.

Karolo e ka sehloohong ea li-drive tse nang le encryption ea hardware ke processor e arohaneng ea li-cryptographic, boteng ba eona bo re bolellang hore linotlolo tsa encryption ha li tlohe ho drive ea USB, ho fapana le linotlolo tsa software tse ka bolokoang ka nakoana ho RAM kapa hard drive ea komporo. Mme hobane encryption ea software e sebelisa memori ea PC ho boloka palo ea liteko tsa ho kena, e ke ke ea emisa litlhaselo tse matla tsa password kapa senotlolo. Teko ea ho kena ka har'a komporo e ka lula e hlophisoa bocha ke mohlaseli ho fihlela lenaneo la "automatic password cracking" le fumana motsoako o lakatsehang.

Ka tsela ..., litlhalosong tsa sehlooho "Kingston DataTraveler: moloko o mocha oa li-flash drive tse sireletsehileng"Basebelisi ba boetse ba hlokometse hore, mohlala, lenaneo la TrueCrypt le na le mokhoa o nkehang oa ts'ebetso. Leha ho le joalo, sena ha se molemo o moholo. 'Nete ke hore tabeng ena lenaneo la encryption le bolokiloe mohopolong oa flash drive,' me sena se etsa hore ho be bonolo ho hlaseloa.

Ntlha ea bohlokoa: mokhoa oa software ha o fane ka boemo bo phahameng ba tšireletso joaloka AES encryption. Ke ts'ireletso ea mantlha. Ka lehlakoreng le leng, encryption ea software ea data ea bohlokoa e ntse e le betere ho feta ho se be le encryption ho hang. 'Me taba ena e re lumella ho khetholla ka ho hlaka pakeng tsa mefuta ena ea li-cryptography: hardware encryption ea li-flash drives ke ntho e hlokahalang, ho e-na le hoo, bakeng sa lefapha la khoebo (mohlala, ha basebetsi ba khampani ba sebelisa likoloi tse fanoeng mosebetsing); le software e loketse haholoanyane litlhoko tsa mosebelisi.

Hobaneng re hloka li-flash drive tse nang le encryption ea Hardware?

Leha ho le joalo, Kingston e arola mefuta ea eona ea likoloi (mohlala, IronKey S1000) ho liphetolelo tsa Basic le Enterprise. Mabapi le lisebelisoa tsa ts'ebetso le ts'ireletso, li batla li tšoana, empa mofuta oa khoebo o fana ka bokhoni ba ho laola koloi ka SafeConsole/IronKey EMS software. Ka software ena, drive e sebetsa le leru kapa li-server tsa lehae ho tiisa ts'ireletso ea password le maano a phihlello. Basebedisi ba fuoa monyetla oa ho fumana li-passwords tse lahlehileng, 'me batsamaisi ba khona ho fetola li-drive tse seng li sa sebelisoe mesebetsing e mecha.

Kingston flash drives e nang le AES encryption e sebetsa joang?

Kingston e sebelisa encryption ea 256-bit AES-XTS (e sebelisa senotlolo sa bolelele bo felletseng) bakeng sa lisebelisoa tsohle tsa eona tse sireletsehileng. Joalo ka ha re hlokometse kaholimo, li-flash drive li na le setsing sa tsona se arohaneng bakeng sa ho notlela le ho hlakola data, e sebetsang joalo ka jenereithara ea linomoro e sa sebetseng e lulang e sebetsa.

Ha o hokela sesebediswa boemakepeng ba USB lekgetlo la pele, Initialization Setup Wizard e o kopa ho seta phasewete e ka sehloohong ho fihlella sesebediswa. Kamora ho kenya drive, li-algorithms tsa encryption li tla qala ho sebetsa ka bo eona ho latela likhetho tsa mosebelisi.

Ka nako e ts'oanang, bakeng sa mosebelisi, molao-motheo oa ts'ebetso ea flash drive o tla lula o sa fetohe - o ntse a tla khona ho jarolla le ho beha lifaele mohopolong oa sesebelisoa, joalo ka ha a sebetsa le USB flash drive e tloaelehileng. Phapang e le 'ngoe feela ke hore ha o hokahanya flash drive khomphuteng e ncha, o tla hloka ho kenya phasewete e behiloeng ho fumana boitsebiso ba hau.

Hobaneng mme ke mang ea hlokang li-flash drive tse nang le encryption ea Hardware?

Bakeng sa mekhatlo eo lintlha tsa bohlokoa e leng karolo ea khoebo (e ka ba tsa lichelete, tsa bophelo bo botle, kapa tsa mmuso), khokahanyo ke eona mokhoa o tšepahalang oa ts'ireletso. Tabeng ena, li-flash drives tse tšehetsang 256-bit AES hardware encryption ke tharollo e scalable e ka sebelisoang ke k'hamphani efe kapa efe: ho tloha ho batho ka bomong le likhoebong tse nyane ho ea ho likhoebo tse kholo, hammoho le mekhatlo ea sesole le ea mmuso. Ho sheba taba ena ka ho hlaka haholoanyane, hoa hlokahala ho sebelisa li-drive tsa USB tse patiloeng:

  • Ho netefatsa polokeho ea data ea lekunutu ea khamphani
  • Ho sireletsa litaba tsa bareki
  • Ho sireletsa lik'hamphani ho lahleheloa ke phaello le botšepehi ba bareki

Ho bohlokoa ho hlokomela hore bahlahisi ba bang ba li-flash drive tse sireletsehileng (ho kenyeletsoa le Kingston) ba fa likhoebo litharollo tse ikhethileng tse etselitsoeng ho fihlela litlhoko le sepheo sa bareki. Empa mela e hlahisoang ka bongata (ho kenyeletsoa li-flash drive tsa DataTraveler) e sebetsana ka katleho le mesebetsi ea eona hantle 'me e khona ho fana ka ts'ireletso ea maemo a khoebo.

Hobaneng re hloka li-flash drive tse nang le encryption ea Hardware?

1. Ho netefatsa ts'ireletso ea data ea lekunutu ea khamphani

Ka 2017, moahi oa London o ile a fumana koloi ea USB ho e 'ngoe ea lirapeng tsa boikhathollo tse neng li e-na le tlhahisoleseding e sirelelitsoeng e sa sirelelitsoeng ka password e amanang le ts'ireletso ea Heathrow Airport, ho kenyelletsa le sebaka sa lik'hamera tsa leihlo le lintlha tse qaqileng mabapi le mehato ea ts'ireletso ha ho fihla. ba boholong. Flash drive e ne e boetse e na le lintlha tsa lipase tsa elektroniki le likhoutu tsa phihlello libakeng tse thibetsoeng boema-fofane.

Bahlahlobisisi ba re lebaka la maemo a joalo ke ho se tsebe ho bala le ho ngola ka cyber ha basebetsi ba k'hamphani, ba ka "hlahisang" data ea lekunutu ka ho se tsotelle ha bona. Li-drive tsa Flash tse nang le encryption ea hardware li rarolla bothata bona, hobane haeba koloi e joalo e lahleha, u ke ke ua khona ho fumana data ho eona ntle le phasewete e kholo ea ofisiri e le 'ngoe ea ts'ireletso. Leha ho le joalo, sena ha se hlokomolohe taba ea hore basebetsi ba tlameha ho koetlisetsoa ho sebetsana le li-flash drive, le haeba re bua ka lisebelisoa tse sirelelitsoeng ke encryption.

2. Ho sireletsa litaba tsa bareki

Mosebetsi oa bohlokoa le ho feta bakeng sa mokhatlo ofe kapa ofe ke ho hlokomela lintlha tsa bareki, tse sa lokelang ho ba tlas'a kotsi ea ho sekisetsa. Ka tsela, ke tlhahisoleseding ena e atisang ho fetisetsoa pakeng tsa likarolo tse fapaneng tsa khoebo 'me, e le molao, e le lekunutu: ka mohlala, e ka' na ea e-ba le lintlha tsa litšebelisano tsa lichelete, histori ea bongaka, joalo-joalo.

3. Tšireletso khahlanong le tahlehelo ea phaello le botšepehi ba bareki

Ho sebelisa lisebelisoa tsa USB tse nang le encryption ea hardware ho ka thusa ho thibela liphello tse bohloko bakeng sa mekhatlo. Likhamphani tse tlolang melao ea ts'ireletso ea data ea motho li ka lefisoa chelete e ngata. Ka hona, potso e tlameha ho botsoa: na ho bohlokoa ho ipeha kotsing ea ho arolelana tlhahisoleseding ntle le tšireletso e nepahetseng?

Le ntle le ho ela hloko tšusumetso ea lichelete, nako le lisebelisoa tse sebelisitsoeng ho lokisa litšitšili tse hlahang li ka ba bohlokoa joalo. Ho feta moo, haeba tlolo ea molao ea data e beha datha ea bareki kotsing, k'hamphani e beha ts'epahalo ea brand kotsing, haholo limmarakeng moo ho nang le bahlolisani ba fanang ka sehlahisoa kapa litšebeletso tse tšoanang.

Ke mang ea netefatsang ho ba sieo ha "li-bookmark" ho tsoa ho moetsi ha u sebelisa li-flash drive tse nang le encryption ea hardware?

Sehloohong seo re se hlahisitseng, mohlomong potso ena ke e 'ngoe ea tse kholo. Har'a maikutlo a sengoloa se mabapi le li-drive tsa Kingston DataTraveler, re fumane potso e 'ngoe e khahlisang: "Na lisebelisoa tsa hau li na le litlhahlobo tse tsoang ho litsebi tse ikemetseng tsa mokha oa boraro?" Ke thahasello e utloahalang: basebelisi ba batla ho etsa bonnete ba hore li-drive tsa rona tsa USB ha li na liphoso tse tloaelehileng, tse kang ho khohlela ho fokolang kapa bokhoni ba ho qoba ho kena ha password. 'Me karolong ena ea sengoloa re tla bua ka mekhoa ea setifikeiti ea Kingston pele e fumana boemo ba li-flash drive tse bolokehileng e le kannete.

Ke mang ea tiisang ho tšepahala? Ho ka bonahala eka re ka re, "Kingston o e entse - ea e tiisa." Empa tabeng ena, polelo e joalo e tla fosahetse, kaha moetsi ke motho ea thahasellang. Ka hona, lihlahisoa tsohle li lekoa ke motho oa boraro ea nang le tsebo e ikemetseng. Haholo-holo, li-drive tsa Kingston hardware-encrypted drives (ntle le DTLPG3) ke barupeluoa ba Cryptographic Module Validation Programme (CMVP) 'me ba tiiselitsoe ho Federal Information Processing Standard (FIPS). Li-drive li boetse li netefalitsoe ho latela litekanyetso tsa GLBA, HIPPA, HITECH, PCI le GTSA.

Hobaneng re hloka li-flash drive tse nang le encryption ea Hardware?

1. Lenaneo la netefatso la mojule oa Cryptographic

Lenaneo la CMVP ke projeke e kopaneng ea Setsi sa Naha sa Maemo le Theknoloji sa Lefapha la Khoebo la US le Setsi sa Ts'ireletso sa Cyber ​​​​Canada. Sepheo sa morero ke ho tsosa tlhokahalo ea lisebelisoa tse netefalitsoeng tsa "cryptographic" le ho fana ka metrics ea ts'ireletso ho mekhatlo ea mmuso le liindasteri tse laoloang (tse kang litsi tsa lichelete le tsa bophelo bo botle) ​​tse sebelisoang ho reka thepa.

Lisebelisoa li lekoa khahlanong le sete ea litlhoko tsa li-cryptographic le ts'ireletso ka li-cryptography tse ikemetseng le lilaboratori tsa tlhahlobo ea ts'ireletso tse ngolisitsoeng ka molao ke Lenaneo la Naha la Boithaopo ba Laboratory (NVLAP). Ka nako e ts'oanang, tlaleho e 'ngoe le e' ngoe ea laboratori e hlahlojoa hore na e lumellana le Federal Information Processing Standard (FIPS) 140-2 le ho tiisoa ke CMVP.

Limojule tse netefalitsoeng hore li lumellana le FIPS 140-2 li khothaletsoa hore li sebelisoe ke US le mekhatlo ea naha ea Canada ho fihlela ka la 22 Loetse 2026. Ka mor'a sena, li tla kenyelletsoa lethathamong la li-archive, le hoja li ntse li tla khona ho sebelisoa. Ka la 22 Loetse 2020, kamohelo ea likopo tsa netefatso ho latela maemo a FIPS 140-3 e felile. Hang ha lisebelisoa li feta licheke, li tla isoa lethathamong le sebetsang la lisebelisoa tse lekiloeng le tse tšeptjoang ka lilemo tse hlano. Haeba sesebelisoa sa cryptographic se sa fete ho netefatsoa, ​​tšebeliso ea eona mekhatlong ea mmuso United States le Canada ha e khothalletsoe.

2. Ke litlhokahalo life tsa tšireletso tseo setifikeiti sa FIPS se li behang?

Ho senya data esita le ho tswa ho koloi e sa netefatsoang ho thata ebile ke batho ba fokolang ba ka e etsang, kahoo ha u khetha koloi ea bareki bakeng sa tšebeliso ea lapeng ka setifikeiti, ha ua lokela ho khathatseha. Lefapheng la likhoebo, boemo bo fapane: ha u khetha li-drive tse sireletsehileng tsa USB, hangata lik'hamphani li hokela bohlokoa ba maemo a setifikeiti sa FIPS. Leha ho le joalo, ha se motho e mong le e mong ea nang le mohopolo o hlakileng oa hore na maemo ana a bolela eng.

Tekanyetso ea hajoale ea FIPS 140-2 e hlalosa maemo a mane a fapaneng a ts'ireletso ao li-flash drive li ka kopanang le ona. Boemo ba pele bo fana ka sete e itekanetseng ea likarolo tsa ts'ireletso. Boemo ba bone bo bolela litlhoko tse tiileng tsa ho itšireletsa ha lisebelisoa. Maemo a bobeli le a boraro a fana ka likhakanyo tsa litlhoko tsena mme a theha mofuta oa moelelo oa khauta.

  1. Tšireletso ea Level XNUMX: Li-drive tsa USB tse netefalitsoeng tsa Level XNUMX li hloka bonyane algorithm e le 'ngoe ea encryption kapa tšobotsi e' ngoe ea ts'ireletso.
  2. Boemo ba bobeli ba ts'ireletso: mona koloi e hlokeha eseng feela ho fana ka tšireletso ea cryptographic, empa hape le ho lemoha ho kenella ho sa lumelloeng ho boemo ba firmware haeba motho a leka ho bula koloi.
  3. Boemo ba boraro ba ts'ireletso: bo kenyelletsa ho thibela ho qhekella ka ho senya "linotlolo" tsa encryption. Ke hore, karabelo ea liteko tsa ho kenella e ea hlokahala. Hape, boemo ba boraro bo tiisa boemo bo phahameng ba ts'ireletso khahlanong le tšitiso ea motlakase: ke hore, ho bala lintlha tse tsoang ho flash drive ho sebelisa lisebelisoa tsa ho hacking tse se nang mohala ho ke ke ha sebetsa.
  4. Boemo ba bone ba ts'ireletso: boemo bo phahameng ka ho fetisisa, bo kenyelletsang ts'ireletso e feletseng ea "cryptographic module", e fanang ka monyetla o moholo oa ho lemoha le ho hanyetsa liteko leha e le life tse sa lumelloeng tsa ho fihlella ka mosebedisi ea sa lumelloeng. Li-flash drive tse fumaneng setifikeiti sa boemo ba bone li boetse li kenyelletsa likhetho tsa ts'ireletso tse sa lumelleng ho qhekella ka ho fetola motlakase le mocheso o teng.

Li-drive tse latelang tsa Kingston li netefalitsoe ho FIPS 140-2 Level 2000: DataTraveler DT4000, DataTraveler DT2G1000, IronKey S300, IronKey D10. Karolo ea bohlokoa ea li-drive tsena ke bokhoni ba bona ba ho arabela tekong ea ho kenella: haeba phasewete e kentsoe ka phoso makhetlo a XNUMX, data e ho drive e tla senngoa.

Ke eng hape e ka etsoang ke li-flash drive tsa Kingston ntle le encryption?

Ha ho tluoa tabeng ea ts'ireletso e feletseng ea data, hammoho le hardware encryption ea li-flash drives, li-antivirus tse hahelletsoeng ka hare, tšireletso ho litšusumetso tsa ka ntle, ho lumellana le maru a botho le likarolo tse ling tseo re tla li tšohla ka tlase li tla thusa. Ha ho na phapang e kholo ho li-flash drive tse nang le encryption ea software. Diabolosi o ka lintlha. Mme ke eng.

1. Kingston DataTraveler 2000

Hobaneng re hloka li-flash drive tse nang le encryption ea Hardware?

Ha re nke mohlala oa USB drive. Litaba tsa Kingston DataTraveler 2000. Ena ke e 'ngoe ea li-flash drive tse nang le encryption ea Hardware, empa ka nako e ts'oanang ke eona feela e nang le keyboard ea eona ea 'mele nyeoeng. Letlapa lena la likonopo tse 11 le etsa hore DT2000 e ikemele ka ho feletseng ho litsamaiso tsa moamoheli (ho sebelisa DataTraveler 2000, o tlameha ho tobetsa konopo ea Key, ebe o kenya phasewete ea hau, ebe o tobetsa konopo ea Key hape). Ho phaella moo, flash drive ena e na le tekanyo ea IP57 ea tšireletso khahlanong le metsi le lerōle (ho makatsang ke hore Kingston ha e bolele sena kae kapa kae ka har'a sephutheloana kapa ka litlhaloso ho websaeteng ea molao).

Ho na le betri ea 2000mAh ea lithium polymer ka har'a DataTraveler 40, 'me Kingston o eletsa bareki ho hokela koloi boema-kepeng ba USB bonyane hora pele ba e sebelisa ho lumella betri ho tjhaja. Ka tsela, ho e 'ngoe ea lisebelisoa tse fetileng re u joetse se etsahalang ka flash drive e lefelloang ho tsoa bankeng ea motlakase: Ha ho na lebaka la ho tšoenyeha - flash drive ha e sebetse ka tjhaja hobane ha ho na likopo ho molaoli ka tsamaiso. Ka hona, ha ho motho ea tla utsoa data ea hau ka ho kenella ka waelese.

2. Kingston DataTraveler Locker + G3

Hobaneng re hloka li-flash drive tse nang le encryption ea Hardware?

Haeba re bua ka mohlala oa Kingston DataTraveler Locker+ G3 - e hohela tlhokomelo ka bokhoni ba ho hlophisa bekapo ea data ho tloha ho flash drive ho ea polokelong ea leru ea Google, OneDrive, Amazon Cloud kapa Dropbox. Khokahano ea data le lits'ebeletso tsena e boetse e fanoa.

E 'ngoe ea lipotso tseo babali ba rona ba re botsang tsona ke: "Empa u ka nka data e patiloeng joang ho backup?" E bonolo haholo. 'Nete ke hore ha ho lumellana le leru, boitsebiso bo tlosoa,' me tšireletso ea "backup" holim'a leru e itšetlehile ka bokhoni ba leru ka boeona. Ka hona, mekhoa e joalo e etsoa feela ka khetho ea mosebedisi. Ntle le tumello ea hae, ha ho na data e tla kenngoa lerung.

3. Lekunutu la Kingston DataTraveler Vault 3.0

Hobaneng re hloka li-flash drive tse nang le encryption ea Hardware?

Empa lisebelisoa tsa Kingston Lekunutu la DataTraveler Vault 3.0 Li boetse li tla le antivirus e hahiloeng ka har'a Drive Security ho tsoa ho ESET. Ea ho qetela e sireletsa data ho tloha ho hlaseloa ha USB drive ka livaerase, spyware, Trojans, worms, rootkits, le ho hokahanya le lik'homphieutha tsa batho ba bang, motho a ka re, ha a tšabe. Antivirus hang-hang e tla hlokomelisa mong'a drive mabapi le litšokelo tse ka bang teng, haeba li le teng. Tabeng ena, mosebelisi ha a hloke ho kenya software ea anti-virus ka boeena mme a lefelle khetho ena. ESET Drive Security e kentsoe pele ho flash drive e nang le laesense ea lilemo tse hlano.

Kingston DT Vault Privacy 3.0 e etselitsoe mme e shebisitsoe haholo-holo ho litsebi tsa IT. E lumella batsamaisi ho e sebelisa e le koloi e ikemetseng kapa ho e eketsa e le karolo ea tharollo ea tsamaiso e bohareng, hape e ka sebelisoa ho lokisa kapa ho seta li-passwords tsa remoutu le ho lokisa maano a lisebelisoa. Kingston o bile a eketsa USB 3.0, e u lumellang ho fetisetsa data e sireletsehileng ka potlako ho feta USB 2.0.

Ka kakaretso, DT Vault Privacy 3.0 ke khetho e ntle haholo bakeng sa lekala la likhoebo le mekhatlo e hlokang tšireletso e phahameng ea data ea bona. E ka khothaletsoa ho basebelisi bohle ba sebelisang likhomphutha tse fumanehang marang-rang a sechaba.

Ho fumana lintlha tse ling mabapi le lihlahisoa tsa Kingston, ikopanye webosaete ea semmuso ea k'hamphani.

Source: www.habr.com

Eketsa ka tlhaloso