Re: [PATCH v2 0/3] dm-crypt: Adds support for wiping key when doing suspend/hibernation

From: Pali RohÃr
Date: Tue Jul 07 2015 - 03:59:57 EST


On Sunday 21 June 2015 13:20:31 Pali RohÃr wrote:
> This patch series increase security of suspend and hibernate actions. It allows
> user to safely wipe crypto keys before suspend and hibernate actions starts
> without race conditions on userspace process with heavy I/O.
>
> To automatically wipe cryto key for <device> before hibernate action call:
> $ dmsetup message <device> 0 key wipe_on_hibernation
>
> To automatically wipe cryto key for <device> before suspend action call:
> $ dmsetup message <device> 0 key wipe_on_suspend
>
> To disable automatic wipe call retain_on_suspend/retain_on_hibernation.
>
> Pali RohÃr (3):
> PM suspend/hibernate: Call notifier after freezing processes
> dm: Export function dm_suspend_md()
> dm-crypt: Adds support for wiping key when doing suspend/hibernation
>
> drivers/md/dm-crypt.c | 126 +++++++++++++++++++++++++++++++++++++++++++---
> drivers/md/dm.c | 6 +++
> drivers/md/dm.h | 5 ++
> include/linux/suspend.h | 2 +
> kernel/power/hibernate.c | 2 +
> kernel/power/suspend.c | 4 +-
> 6 files changed, 136 insertions(+), 9 deletions(-)
>

Hello, can somebody look and review this (v2) patch series?

--
Pali RohÃr
pali.rohar@xxxxxxxxx
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/